Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Important packages to stop hackers

    Scheduled Pinned Locked Moved Firewalling
    10 Posts 3 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      Firewalldude89
      last edited by

      HI all

      I can now log into the admin page on the web, I only use IPv4 and link local on IPv6.
      What packages are important to stop hackers?

      Should I enable interface on both LAN and WAN on Snort and Suricata?

      S 1 Reply Last reply Reply Quote 0
      • S
        SteveITS Galactic Empire @Firewalldude89
        last edited by

        @Firewalldude89 inbound traffic on WAN is disallowed by default.

        Donโ€™t run both Snort and Suricata, they do the same thing. I suggest Suricata as Snort on pfSense apparently has a limited life. Run it on LAN so you can see which PCs are triggering alerts.

        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
        Upvote ๐Ÿ‘ helpful posts!

        F PhizixP 3 Replies Last reply Reply Quote 1
        • F
          Firewalldude89 @SteveITS
          last edited by

          @SteveITS Thanks, I think there is a considerable breakthrough now on this technology issue.
          Am such a stressed tech noob on this, but am learning

          1 Reply Last reply Reply Quote 0
          • F
            Firewalldude89 @SteveITS
            last edited by

            @SteveITS Is it unnecessary to run it on WAN?

            S 1 Reply Last reply Reply Quote 0
            • S
              SteveITS Galactic Empire @Firewalldude89
              last edited by

              @Firewalldude89 IDS on WAN will work but runs outside the firewall so will scan every inbound packet even ones that will be immediately dropped. On LAN it will scan only allowed packets.

              Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
              When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
              Upvote ๐Ÿ‘ helpful posts!

              F 1 Reply Last reply Reply Quote 1
              • F
                Firewalldude89 @SteveITS
                last edited by

                @SteveITS How do I turn WAN on and turn the default setting off?

                S 1 Reply Last reply Reply Quote 0
                • PhizixP
                  Phizix @SteveITS
                  last edited by Phizix

                  @SteveITS said in Important packages to stop hackers:

                  I suggest Suricata as Snort on pfSense apparently has a limited life.

                  @SteveITS,

                  I currently run Snort. Is EOL planned for it? If so when I finish transferring to my new 8200 I will set up Suricata.

                  Phizix

                  S 1 Reply Last reply Reply Quote 0
                  • S
                    SteveITS Galactic Empire @Phizix
                    last edited by

                    @Phizix see https://forum.netgate.com/topic/180501/snort-v3/5

                    Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                    When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                    Upvote ๐Ÿ‘ helpful posts!

                    PhizixP 1 Reply Last reply Reply Quote 1
                    • S
                      SteveITS Galactic Empire @Firewalldude89
                      last edited by

                      @Firewalldude89 for Suricata? It has a page to add/copy/delete it on an interface.

                      Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                      When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                      Upvote ๐Ÿ‘ helpful posts!

                      1 Reply Last reply Reply Quote 0
                      • PhizixP
                        Phizix @SteveITS
                        last edited by

                        @SteveITS,

                        Thank you that was helpful. So I will plan on moving to Suricata on the 8200 when I get it all set up.

                        Phizix

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.