[Oisf-users] Really desperated: Suricata drops allmost packages

Andreas Herz andi at geekosphere.org
Wed Mar 28 21:47:47 UTC 2018


On 23/03/18 at 09:42, C. L. Martinez wrote:
> ------------------------------------------------------------------------------------
> capture.kernel_packets                     | Total                     |
> 437700
> capture.kernel_drops                       | Total                     |
> 74114

That's really bad, I agree.

> 23/3/2018 -- 07:26:18 - <Info> - 9 rule files processed. 28727 rules
> successfully loaded, 0 rules failed

Is it possible that you run it with no rules just to make sure it's not
related to any rule?

-- 
Andreas Herz


More information about the Oisf-users mailing list