StamusNetworks / SELKS

A Suricata based IDS/IPS/NSM distro
https://www.stamus-networks.com/open-source/#selks
GNU General Public License v3.0
1.46k stars 286 forks source link

Tab Advanced data in detailed rule activity #218

Open VN1977 opened 4 years ago

VN1977 commented 4 years ago

Hi, How to get something here? A haven't ever seen anything there. Is it for Enterprise version? изображение

pevma commented 4 years ago

You need to enable those two settings to auto and then update and push the ruleset from the Suricata tab - as on the screenshot below. Then on some alerts it will start populating . Screenshot from 2020-04-23 18-22-47