Chinese Yellow Pages | Classifieds | Knowledge | Tax | IME


on Debian 8

apt-get install suricata  ( it is 2.0.7 version)

vi /etc/default/suricata  ( change RUN=yes, and adjust IFACE to  the interface and listen mode to pcap)

systemctl start suricata

tail -f /var/log/suricata/fast.lg ( eve.json)


rules mangement:

apt-get install oinkmaster

add /etc/oinkmaster.conf
url =

then run:
oinkmaster -C /etc/oinkmaster.conf -o /etc/suricata/rules

systemctl restart suricata


Leave a Reply

Your email address will not be published. Required fields are marked *