• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Important packages to stop hackers

Scheduled Pinned Locked Moved Firewalling
10 Posts 3 Posters 1.1k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • F
    Firewalldude89
    last edited by Aug 5, 2023, 3:21 PM

    HI all

    I can now log into the admin page on the web, I only use IPv4 and link local on IPv6.
    What packages are important to stop hackers?

    Should I enable interface on both LAN and WAN on Snort and Suricata?

    S 1 Reply Last reply Aug 5, 2023, 4:23 PM Reply Quote 0
    • S
      SteveITS Galactic Empire @Firewalldude89
      last edited by Aug 5, 2023, 4:23 PM

      @Firewalldude89 inbound traffic on WAN is disallowed by default.

      Don’t run both Snort and Suricata, they do the same thing. I suggest Suricata as Snort on pfSense apparently has a limited life. Run it on LAN so you can see which PCs are triggering alerts.

      Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
      When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
      Upvote πŸ‘ helpful posts!

      F P 3 Replies Last reply Aug 5, 2023, 4:26 PM Reply Quote 1
      • F
        Firewalldude89 @SteveITS
        last edited by Aug 5, 2023, 4:26 PM

        @SteveITS Thanks, I think there is a considerable breakthrough now on this technology issue.
        Am such a stressed tech noob on this, but am learning

        1 Reply Last reply Reply Quote 0
        • F
          Firewalldude89 @SteveITS
          last edited by Aug 5, 2023, 4:35 PM

          @SteveITS Is it unnecessary to run it on WAN?

          S 1 Reply Last reply Aug 5, 2023, 4:47 PM Reply Quote 0
          • S
            SteveITS Galactic Empire @Firewalldude89
            last edited by Aug 5, 2023, 4:47 PM

            @Firewalldude89 IDS on WAN will work but runs outside the firewall so will scan every inbound packet even ones that will be immediately dropped. On LAN it will scan only allowed packets.

            Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
            When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
            Upvote πŸ‘ helpful posts!

            F 1 Reply Last reply Aug 5, 2023, 6:22 PM Reply Quote 1
            • F
              Firewalldude89 @SteveITS
              last edited by Aug 5, 2023, 6:22 PM

              @SteveITS How do I turn WAN on and turn the default setting off?

              S 1 Reply Last reply Aug 5, 2023, 7:42 PM Reply Quote 0
              • P
                Phizix @SteveITS
                last edited by Phizix Aug 5, 2023, 6:56 PM Aug 5, 2023, 6:55 PM

                @SteveITS said in Important packages to stop hackers:

                I suggest Suricata as Snort on pfSense apparently has a limited life.

                @SteveITS,

                I currently run Snort. Is EOL planned for it? If so when I finish transferring to my new 8200 I will set up Suricata.

                Phizix

                S 1 Reply Last reply Aug 5, 2023, 7:40 PM Reply Quote 0
                • S
                  SteveITS Galactic Empire @Phizix
                  last edited by Aug 5, 2023, 7:40 PM

                  @Phizix see https://forum.netgate.com/topic/180501/snort-v3/5

                  Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                  When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                  Upvote πŸ‘ helpful posts!

                  P 1 Reply Last reply Aug 5, 2023, 9:06 PM Reply Quote 1
                  • S
                    SteveITS Galactic Empire @Firewalldude89
                    last edited by Aug 5, 2023, 7:42 PM

                    @Firewalldude89 for Suricata? It has a page to add/copy/delete it on an interface.

                    Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                    When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                    Upvote πŸ‘ helpful posts!

                    1 Reply Last reply Reply Quote 0
                    • P
                      Phizix @SteveITS
                      last edited by Aug 5, 2023, 9:06 PM

                      @SteveITS,

                      Thank you that was helpful. So I will plan on moving to Suricata on the 8200 when I get it all set up.

                      Phizix

                      1 Reply Last reply Reply Quote 0
                      10 out of 10
                      • First post
                        10/10
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                        This community forum collects and processes your personal information.
                        consent.not_received