[Oisf-users] My Suricata cannot detect penetration in other computer

yudhi ardiyanto yudhi.ardiyanto at gmail.com
Wed Apr 8 23:59:13 UTC 2020


I used HOME_NET with network 10.20.20.0/24. My IDS 10.20.20.174/24 (VM in
Virtualbox), kali linux 10.20.20.82/24 (VM in Virtualbox) and My komputer
10.20.20.29.

EXTERNAL_NET = any

If i attack 10.20.20.174 with kalilinux 10.20.20.82 ===> Suricata detected

If i attack 10.20.20.29 from kalilinux(10.20.20.82) ===> suricata not
detected

On Thu, 9 Apr 2020 at 01.41 Tiago Faria <tiago.faria.backups at gmail.com>
wrote:

> Make sure the network definitions are configured properly (what defines
> your internal network).
>
> On Wed, 8 Apr 2020 at 08:23, yudhi ardiyanto <yudhi.ardiyanto at gmail.com>
> wrote:
>
>> Hello Guys
>>
>> why suricata cannot detect attacks from other computers to other computers, but can only detect when someone attacks him
>>
>> _______________________________________________
>
>
>> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
>> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
>> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
>>
>> Conference: https://suricon.net
>> Trainings: https://suricata-ids.org/training/
>
> _______________________________________________
> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
>
> Conference: https://suricon.net
> Trainings: https://suricata-ids.org/training/
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20200409/6c11ef43/attachment.html>


More information about the Oisf-users mailing list