Windows 10 updates and Suricata

  • Gentlemen:

    I am using Suricata and have problems with blocking updates from Windows 10. What would be a solution for this issue?
    Thanks for any help and suggestions.

    G. Howard Krauss

  • You need to examine the ALERTS tab to see which specific rules are triggering alerts resulting in blocks.  You then evaluate the rule in your environment to determine if it is a false positive.  If you determine it is, you can either suppress the alert using the icons on the ALERTS tab; or you can disable the rule completely (again using the icons on the ALERTS tab is the best way).


Log in to reply