Suricata signature rule - email alert



  • Hello everybody

    Is it possible to configure pfsense+suricate to make a e-mail alert when some signature rule is met? Means no watchdog, but e-mail alert when selected signature is detected.

    Best regards
    Michal



  • @michal:

    Hello everybody

    Is it possible to configure pfsense+suricate to make a e-mail alert when some signature rule is met? Means no watchdog, but e-mail alert when selected signature is detected.

    Best regards
    Michal

    No, this capability does not exist.  Sounds like you need a third-party alert correlator on separate server if you want that level of functionality.

    Bill


Log in to reply