Monitor Intel feeds #9659
-
Is there a feature where SecurityOnion will alert me if it couldn't connect and updates the signatures ? Thanks ! |
Beta Was this translation helpful? Give feedback.
Answered by
InfosecGoon
Jan 31, 2023
Replies: 1 comment 1 reply
-
I believe the Suricata container restarts whenever new rules are loaded -- would a Grafana alert that fires when so-suricata is more than X hours of uptime be high-fidelity enough for this? |
Beta Was this translation helpful? Give feedback.
1 reply
Answer selected by
3isenHeiM
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
I believe the Suricata container restarts whenever new rules are loaded -- would a Grafana alert that fires when so-suricata is more than X hours of uptime be high-fidelity enough for this?