[Oisf-users] A question about bpf filter under suricata 4.1.2

Carlos Lopez clopmz at outlook.com
Fri Feb 1 11:58:17 UTC 2019


Hi all,

 I am seeing a strange problem with BPF filters under Suricata 4.1.2. Using the following bpf filter works without problem under tcpdump:

not host 10.1.53.70 and (vlan 10 or vlan 11)

 But using same filter in Suricata in pcap, bpf-filter section it doesn't works. Suricata doesn't see any packet ... Any idea why? 

Regards,
C. L. Martinez


More information about the Oisf-users mailing list