Suricata Alert Log View Filter
-
Just going through baselining Suricata after moving from Snort.
@bmeeks Is there a way to filter on the alerts tab and exclude the suppressed alerts.
-
@NogBadTheBad said in Suricata Alert Log View Filter:
Just going through baselining Suricata after moving from Snort.
@bmeeks Is there a way to filter on the alerts tab and exclude the suppressed alerts.
No, not currently. You can filter on several parameters, but "Suppressed" is not one of them.
-
@bmeeks Thanks Bill.