[Oisf-users] Suricata with Netmap Inline

Shawn Venti smventi944 at gmail.com
Tue Aug 15 21:05:29 UTC 2017


Hello,

I have just started to use Suricata and have a question about the setup I
am trying to create.

Currently, I am running Suricata with Netmap in inline mode. The hardware I
am using has three NICs which one I am using as a management port and the
other two to run as the inline bridge. My new goal is to also run PRADs
(Passive Real-time Asset Detection) on the same box and have it analyze
that same traffic that Suricata is.

I believe I have to use the OS endpoint feature of Netmap to setup my
interfaces correctly but am unsure as to the specific configuration.

Is this possible? How would the configuration look?

Thank You,

Shawn
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20170815/22aa482e/attachment.html>


More information about the Oisf-users mailing list