[Oisf-users] Suricata under libvirt

Andreas Herz andi at geekosphere.org
Sat May 28 22:40:13 UTC 2016

On 19/05/16 at 19:12, Chris Boley wrote:
> I have been playing with using suricata ' inline ' using KVM/QEMU
> <http://libvirt.org/drvqemu.html> by way of the libvirt toolkit.
> I realize that the setups will vary wildly based on the hardware platform
> capabilities. I'm wondering if anyone else here on the list could share
> with me any experiences they've had on the networking I/O side of things
> like tuning specifically for where it concerns suricata. For example, how
> you have set up network configs on both the host systems and guest OS's to
> get the best performance?
> I've already got a config that's working, I'm just not sure it's the best
> way to go about it.

Can you share your config and experience?

>  If anybody can let me know I'd be really interested in getting that input.
> Hopefully this is an appropriate topic for the list.

Sure it is!

> Thanks in advance,
> Chris

> _______________________________________________
> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
> Suricata User Conference November 9-11 in Washington, DC: http://oisfevents.net

Andreas Herz

More information about the Oisf-users mailing list