Project

General

Profile

Actions

Documentation #5690

open

userguide: document the differences between IPS and IDS mode

Added by Jason Ish almost 2 years ago. Updated 4 months ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

For example, in IDS mode an alert is generated on the "ack" to the alert generating traffic which does lead to some confusion that comes up periodically. I believe there are other differences as well that I can't recall at this time.


Related issues 1 (1 open0 closed)

Related to Suricata - Bug #3480: EVE JSON - Incorrect Packet LoggedNewOISF DevActions
Actions #1

Updated by Jason Ish almost 2 years ago

  • Related to Bug #3480: EVE JSON - Incorrect Packet Logged added
Actions #2

Updated by Juliana Fajardini Reichow almost 2 years ago

  • Assignee changed from OISF Dev to Juliana Fajardini Reichow
Actions #3

Updated by Juliana Fajardini Reichow almost 2 years ago

  • Affected Versions 7.0.0-rc2 added
Actions #4

Updated by Juliana Fajardini Reichow almost 2 years ago

  • Target version changed from TBD to 8.0.0-beta1
  • Affected Versions git master added
  • Affected Versions deleted (7.0.0-rc2)
Actions #5

Updated by Victor Julien 10 months ago

  • Assignee changed from Juliana Fajardini Reichow to OISF Dev
Actions #6

Updated by Victor Julien 4 months ago

  • Subject changed from Document the differences between IPS and IDS mode. to userguide: document the differences between IPS and IDS mode
Actions

Also available in: Atom PDF