[Oisf-users] Suricata Heartbeat Alert

Jason Ish ish at unx.ca
Fri Jul 28 14:38:01 UTC 2017


On 2017-07-28 07:37 AM, Charles Devoe wrote:
> Is there a way to have Suricata create a heartbeat alert?  This alert 
> would be a dummy alert and would be used to let us know that the 
> Suricata system is up and working and all of our ancillary functions are 
> also working.

No, Suricata does not support this. I know others have accomplished this 
by using a custom rule and periodically injecting a special packet into 
their network as a heartbeat. This is more a complete test as it tests 
the actual packet reception by the monitoring system as well.

Jason




More information about the Oisf-users mailing list