|
|
|
|
@ -1857,78 +1857,10 @@ napatech:
|
|
|
|
|
## file configuration".
|
|
|
|
|
##
|
|
|
|
|
|
|
|
|
|
@no_suricata_update_comment@default-rule-path: @e_defaultruledir@
|
|
|
|
|
@no_suricata_update_comment@rule-files:
|
|
|
|
|
@no_suricata_update_comment@ - suricata.rules
|
|
|
|
|
default-rule-path: @e_defaultruledir@
|
|
|
|
|
|
|
|
|
|
##
|
|
|
|
|
## Advanced rule file configuration.
|
|
|
|
|
##
|
|
|
|
|
## If this section is completely commented out then your configuration
|
|
|
|
|
## is setup for suricata-update as it was most likely bundled and
|
|
|
|
|
## installed with Suricata.
|
|
|
|
|
##
|
|
|
|
|
|
|
|
|
|
@has_suricata_update_comment@default-rule-path: @e_defaultruledir@
|
|
|
|
|
|
|
|
|
|
@has_suricata_update_comment@rule-files:
|
|
|
|
|
@has_suricata_update_comment@ - botcc.rules
|
|
|
|
|
@has_suricata_update_comment@ # - botcc.portgrouped.rules
|
|
|
|
|
@has_suricata_update_comment@ - ciarmy.rules
|
|
|
|
|
@has_suricata_update_comment@ - compromised.rules
|
|
|
|
|
@has_suricata_update_comment@ - drop.rules
|
|
|
|
|
@has_suricata_update_comment@ - dshield.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-activex.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-attack_response.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-chat.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-current_events.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-dns.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-dos.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-exploit.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-ftp.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-games.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-icmp_info.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-icmp.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-imap.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-inappropriate.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-info.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-malware.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-misc.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-mobile_malware.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-netbios.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-p2p.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-policy.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-pop3.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-rpc.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-scada.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-scada_special.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-scan.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-shellcode.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-smtp.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-snmp.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-sql.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-telnet.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-tftp.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-trojan.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-user_agents.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-voip.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-web_client.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-web_server.rules
|
|
|
|
|
@has_suricata_update_comment@# - emerging-web_specific_apps.rules
|
|
|
|
|
@has_suricata_update_comment@ - emerging-worm.rules
|
|
|
|
|
@has_suricata_update_comment@ - tor.rules
|
|
|
|
|
@has_suricata_update_comment@# - decoder-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@# - stream-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@ - http-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@ - smtp-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@ - dns-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@ - tls-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@# - modbus-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@# - app-layer-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@# - dnp3-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@# - ntp-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@# - ipsec-events.rules # available in suricata sources under rules dir
|
|
|
|
|
@has_suricata_update_comment@# - kerberos-events.rules # available in suricata sources under rules dir
|
|
|
|
|
rule-files:
|
|
|
|
|
- suricata.rules
|
|
|
|
|
|
|
|
|
|
##
|
|
|
|
|
## Auxiliary configuration files.
|
|
|
|
|
|