Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Is it possible to limit scanning on the WAN interface to a single port?

    Scheduled Pinned Locked Moved IDS/IPS
    3 Posts 2 Posters 364 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jc1976
      last edited by

      I have suricata set up to scan on the LAN (obviously), however i have one open port on the WAN (port forward for plex).

      is it possible to have suricata ONLY scan that one port on the wan instead of the entire wan interface? this would be to limit all the noise that would otherwise be generated.

      thanks!

      S 1 Reply Last reply Reply Quote 0
      • S
        SteveITS Galactic Empire @jc1976
        last edited by

        @jc1976 AFAIK know, no, but you can limit categories scanned on WAN. You probably don't need it scanning on both interfaces though?

        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
        Upvote 👍 helpful posts!

        J 1 Reply Last reply Reply Quote 0
        • J
          jc1976 @SteveITS
          last edited by

          @SteveITS

          re: scanning on both interfaces...

          well, i suppose if i can limit it then the firewall on the windows box that it's port-forwarding to would take care of it.. but in a perfect world i would prefer to have suricata scanning the one port on my wan that i have open.

          i've thought about putting that box on it's own vlan, i believe i can do that. i'm just not advanced/savvy enough to where i can whittle it all down to what's needed and what isn't

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.