Show me your BPF #9575
Replies: 1 comment
-
Many people filter out traffic from their internal vulnerability scanners, especially from Suricata. Lots of alerts, all false positives. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
We have a lot of traffic that we are taping. I have seen some suggestions on what to filter out from zeek, suricata, and stenographer.
what I have filtered out is
Are there other network flows that don't make sense to go through and or all of these applications?
Beta Was this translation helpful? Give feedback.
All reactions