On 01/10/19 at 12:42, Ayhan ARDA wrote: > I can reject some rules but not all of them. I tested this, for example > when I reject off some rdp traffic and and my access is cut off. This is a > good thing. How do you run suricata and how does your configuration look like? -- Andreas Herz