Actions
Bug #2933
closedSuricata 4.1.3 block flow
Affected Versions:
Effort:
Difficulty:
Label:
Description
Hi,
I use Suricata 4.1.3 on Debian 9
I use the followinf iptables command to redirect flow to Suricata
iptables -A FORWARD -d xxx.xxx.xxx.xxx -m state --state RELATED,ESTABLISHED -j NFQUEUE --queue-num 1
iptables -A FORWARD -s xxx.xxx.xxx.xxx -j NFQUEUE --queue-num 1
Sometimes, Suricata seems drop all packet without informations in logs files.
I need to kill Suricata, then I put iptables -I FORWAD -j ACCEPT and then I restart Suricata like this:
/usr/bin/suricata -c /etc/suricata/suricata.yaml -q 1
To finish I remove the iptables rules: iptables -D FORWAD -j ACCEPT
This problems is appeared with release 4.1.3
Before with Suricata 4.1.2 I have no problem.
Is it a bug of Suricata?
Thank you
Anthony
Actions