Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Suricata Alerts page acting strange for anybody else? [SOLVED]

    Scheduled Pinned Locked Moved IDS/IPS
    2 Posts 1 Posters 474 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      skogs
      last edited by skogs

      So on the Alerts page it is frequently not showing anything on WAN or LAN, yet on the Blocks page it is very clearly spitting out the normal information of all the blocked IPs and alert description.

      Additionally, on the occasion it does populate the alerts, my 'add this alert to the Suppress List' button isn't working reliably. I just tried spamming the heck out of it on several alerts to test, and 1 out of a dozen actually triggered the page to reload and noted that the rule was added to suppress list.

      I did a ton of beta testing on the 2.6.0 betas and release candidates and didn't notice any problems then, but it is possible I just never needed to click any of those buttons either during the testing period. Recently bumped from 2.5.2 > 2.6.0RC > 2.6.0 > 22.01.

      S 1 Reply Last reply Reply Quote 0
      • S skogs referenced this topic on
      • S skogs referenced this topic on
      • S
        skogs @skogs
        last edited by

        I swear this update wasn't available when I posted the above...
        I'm probably a knuckle dragging fool but since yesterday a package update for Suricata showed up.

        Bumping from pfsense-pkg-suricata 6.0.4 to 6.0.4_1 fixed up my issue.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.