Just alerting is enabled but not sure if it works like i which ;) i Build me a Dashboard in kibana https://www.dropbox.com/s/ty6rfrd6y5z3gqd/Screenshot%202016-06-20%2020.37.26.png?dl=0 <https://www.dropbox.com/s/ty6rfrd6y5z3gqd/Screenshot%202016-06-20%2020.37.26.png?dl=0> But i dont see what is getting blocked ;)
Its just for information ;) > Am 20.06.2016 um 20:31 schrieb Steve Yates <[email protected]>: > > You should be able to go the other direction and set up a pass list > that allows everything but these IPs. Remember to add the pass list to the > interface though. > > However if you just enable the alerting and select to not automatically > block the bad traffic that may be easier. > > -- > > Steve Yates > ITS, Inc. > > -----Original Message----- > From: List [mailto:[email protected]] On Behalf Of Daniel Eschner > Sent: Monday, June 20, 2016 1:28 PM > To: pfSense Support and Discussion Mailing List <[email protected]> > Subject: [pfSense] add Blocking in suricata just for some IPs > > Hi to everyone, > > is it possible to add blocking mode just to some IPs from a /24 Network? > I want to run that in test mode to see who much false positiv i will see ;) > > Cheers > > Daniel > > > _______________________________________________ > pfSense mailing list > https://lists.pfsense.org/mailman/listinfo/list > Support the project with Gold! https://pfsense.org/gold > _______________________________________________ > pfSense mailing list > https://lists.pfsense.org/mailman/listinfo/list > Support the project with Gold! https://pfsense.org/gold _______________________________________________ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project with Gold! https://pfsense.org/gold
