Project

General

Profile

Actions

Documentation #5690

open

userguide: document the differences between IPS and IDS mode

Added by Jason Ish almost 2 years ago. Updated 4 months ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

For example, in IDS mode an alert is generated on the "ack" to the alert generating traffic which does lead to some confusion that comes up periodically. I believe there are other differences as well that I can't recall at this time.


Related issues 1 (1 open0 closed)

Related to Suricata - Bug #3480: EVE JSON - Incorrect Packet LoggedNewOISF DevActions
Actions

Also available in: Atom PDF