You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
SSL certificate blacklist from Abuse.ch. Disabled by default.
140
+
SSL certificate blacklist from Abuse.ch. Only available in non-Airgap, disabled by default.
141
141
142
142
|For more information, see:
143
143
|https://sslbl.abuse.ch/
@@ -151,10 +151,10 @@ Suricata Metadata Rulesets
151
151
When Suricata is configured as the metadata engine (instead of :ref:`zeek`), two additional rulesets become available:
152
152
153
153
SO_EXTRACTIONS
154
-
Extraction rules that control which file types Suricata extracts from network traffic for analysis by :ref:`strelka`. This ruleset is **enabled by default** when Suricata is the metadata engine.
154
+
Extraction rules that control which file types Suricata extracts from network traffic for analysis by :ref:`strelka`. This ruleset is imported and **enabled by default** when Suricata is the metadata engine.
155
155
156
156
SO_FILTERS
157
-
Filter rules that control which metadata Suricata logs. Use these to reduce unnecessary metadata logging. This ruleset is **disabled by default** when Suricata is the metadata engine.
157
+
Filter rules that control which metadata Suricata logs. Use these to reduce unnecessary metadata logging. This ruleset is imported but **disabled by default** when Suricata is the metadata engine.
0 commit comments