Suricata snort2c query
-
Hi There,
We are currently running pfsense 2.2.6-RELEASE with the suricata package installed.
We are repeatedly having a specific ip address which is being blocked by the firewall.
When the ip is blocked there is no trace of it under blocked hosts under services > suricata > blocks or services > suricata > alerts
It does however show up under the snort2c table and has to be manually removed from there to regain access.
I have added the ip in question to the suricata pass list but it continues to be blocked in snort2c.
Any advice on this one?
Thanks.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.