๐ฆInstalling and Configuring Network Based IDS In Ubuntu: Suricata
Install Suricata In Ubuntu
$ sudo apt install suricataModify The Configuration File
Update Suricata
List Suricata Rules

Download Rulesets

Enable A Source

Test The Suricata Configuration File
Run Suricata
View The Logs
Test If The Data Is Logged Or Not?
Make a Curl Request
View The Logs
Suricata Custom Rules
Create a Custom Rule
Add the Below Line In local.rules file
Add the local.rules file name/path in suricata.yaml file
Install jq
View the Latest Logs
Last updated