[Oisf-users] Using Suricata with OpenBSD HA Firewalls

Andreas Herz andi at geekosphere.org
Tue Nov 29 21:17:55 UTC 2016


On 29/11/16 at 08:05, C. L. Martinez wrote:
> /usr/local/bin/suricata -D -c /etc/suricata/suricata.yaml -i carp0 -i carp3 -i carp5 -k none -vv

This looks correct. I know carp but never used it with suricata. Could
you share a small .pcap that shows that issue with us?
And could you try to limit it to one of the carp devices, carp0 seems to
be the one with the traffic if I look into your first mail.

-- 
Andreas Herz



More information about the Oisf-users mailing list