[Oisf-users] suricata-update and path/files in config

Jason Ish ish at unx.ca
Fri Jan 19 19:10:04 UTC 2018


On 2018-01-19 01:03 PM, Tiago Faria wrote:
> Thank you for that explanation Jason. Clear!
> 
> I would +1 the idea of having them available via download. There's
> already the OISF source in suricata-update, so maybe even host them
> there? Could possibly make the experience of people using the
> pre-compiled packages easier (unless the rules are part of the package
> and I didn't notice it).
> 
> Is there any alternative method to get the engine rules or is the
> build argument you mentioned the recommend way?

If you have the source, you'll find them in the rules/ directory. You 
can just copy those .rules files to /etc/suricata/rules.

I believe the Fedora/EPEL package puts them in /etc/suricata/rules for you.

Jason



More information about the Oisf-users mailing list