* Re: Suppress Feature
[not found] <88B683D4-42A1-40D8-A143-5DE9A72F32E6@yahoo.com>
@ 2021-02-24 11:58 ` Michael Tremer
0 siblings, 0 replies; 2+ messages in thread
From: Michael Tremer @ 2021-02-24 11:58 UTC (permalink / raw)
To: development
[-- Attachment #1: Type: text/plain, Size: 1277 bytes --]
Ah okay.
IPFire currently does not provide that functionality over the UI.
> On 24 Feb 2021, at 11:49, Reza Fathi <rezafathi20032003(a)yahoo.com> wrote:
>
> Hello, Michael,
>
> Yes i know the whitelist but if you see the link i provided you can suppress based on a single rule for any source or destination ip. But in whitelist if I add a host I won’t get any alert anymore.
>
> Regards,
> Reza.
>
> On Feb 24, 2021, at 14:39, Michael Tremer <michael.tremer(a)ipfire.org> wrote:
>
> Hello Reza,
>
> IPFire has a whitelist feature where you can add hosts so that they won’t be blocked at all.
>
> Is it this what you are looking for?
>
> -Michael
>
>> On 23 Feb 2021, at 21:59, Reza Fathi <rezafathi20032003(a)yahoo.com> wrote:
>>
>>
>> Dear madam/sir,
>>
>> As you might know there is a feature in pfsense called suppress list where you can add source or destination ip addresses along with a rule causing the alert to bypass it. But that is not available in ipfire. So is there any way so I can add suppress list on suricata by hand? Would you please add this feature in ipfire?. Thanks.
>>
>> https://pfsense-docs.readthedocs.io/en/latest/ids-ips/snort-suppress-list.html
>>
>>
>> Regards,
>> Reza.
>
>
^ permalink raw reply [flat|nested] 2+ messages in thread
* Re: Suppress Feature
[not found] <95FDB08C-E6BE-43A7-93F2-3887AF38ED09@yahoo.com>
@ 2021-02-24 11:09 ` Michael Tremer
0 siblings, 0 replies; 2+ messages in thread
From: Michael Tremer @ 2021-02-24 11:09 UTC (permalink / raw)
To: development
[-- Attachment #1: Type: text/plain, Size: 732 bytes --]
Hello Reza,
IPFire has a whitelist feature where you can add hosts so that they won’t be blocked at all.
Is it this what you are looking for?
-Michael
> On 23 Feb 2021, at 21:59, Reza Fathi <rezafathi20032003(a)yahoo.com> wrote:
>
>
> Dear madam/sir,
>
> As you might know there is a feature in pfsense called suppress list where you can add source or destination ip addresses along with a rule causing the alert to bypass it. But that is not available in ipfire. So is there any way so I can add suppress list on suricata by hand? Would you please add this feature in ipfire?. Thanks.
>
> https://pfsense-docs.readthedocs.io/en/latest/ids-ips/snort-suppress-list.html
>
>
> Regards,
> Reza.
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2021-02-24 11:58 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
[not found] <88B683D4-42A1-40D8-A143-5DE9A72F32E6@yahoo.com>
2021-02-24 11:58 ` Suppress Feature Michael Tremer
[not found] <95FDB08C-E6BE-43A7-93F2-3887AF38ED09@yahoo.com>
2021-02-24 11:09 ` Michael Tremer
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox