Skip to content
Discussion options

You must be logged in to vote

It looks like your Suricata rules did not make it into the so-detection index.

Try this:
Remove /opt/so/conf/soc/fingerprints/emerging-all.fingerprint and /opt/so/conf/soc/fingerprints/suricataengine.state
Restart SOC - sudo so-soc-restart
Run a full sync on Suricata rules from Detections

Replies: 2 comments 4 replies

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
4 replies
@cm-ops
Comment options

@Green-Pool
Comment options

@cm-ops
Comment options

Answer selected by Green-Pool
@Green-Pool
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
2.4
Labels
None yet
2 participants