suricata: Collect metrics on scanned and bypassed packets

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
This commit is contained in:
Michael Tremer
2024-09-10 23:45:53 +02:00
parent 8b73307b15
commit a85924cc25
2 changed files with 8 additions and 2 deletions

View File

@@ -52,6 +52,10 @@ include "/etc/collectd.precache"
Chain filter SPOOFED_MARTIAN DROP_SPOOFED_MARTIAN
Chain filter HOSTILE_DROP_IN DROP_HOSTILE
Chain filter HOSTILE_DROP_OUT DROP_HOSTILE
# IPS
Chain mangle IPS BYPASSED
Chain mangle IPS SCANNED
</Plugin>
#<Plugin logfile>