old custom suricata not showing at detection page #13307
-
Version2.4.80 Installation MethodSecurity Onion ISO image Descriptionconfiguration Installation TypeDistributed Locationon-prem with Internet access Hardware SpecsExceeds minimum requirements CPU100 RAM100 Storage for /1T Storage for /nsm1T Network Traffic Collectionspan port Network Traffic Speedsmore than 10Gbps StatusYes, all services on all nodes are running OK Salt StatusNo, there are no failures LogsNo, there are no additional clues Detailhi previously i have added new custom rules at the configuration page now it is not able to edit ( i want to delete some testing rules) Guidelines
|
Beta Was this translation helpful? Give feedback.
Replies: 1 comment
-
You will need to remove those rules from /opt/so/saltstack/local/salt/idstools/rules/local.rules and then re-add them using the Detections interface. You can do that individually or bulk. Also see here for more details: #13206 (reply in thread) |
Beta Was this translation helpful? Give feedback.
You will need to remove those rules from /opt/so/saltstack/local/salt/idstools/rules/local.rules and then re-add them using the Detections interface. You can do that individually or bulk.
Also see here for more details: #13206 (reply in thread)