Using Suricata-Update on OPNSense

Updated 2024-12-06: Updated both scripts, using newer suricata-update from get-go, updated classification.config, some minor adjusting of content. Updated 2024-12-18: Corrected a typo in ‘suricatamod.sh‘, there was an extra space in two places Updated 2024-12-19: As of OPNSense 24.7.11_2 we should have access to the latest ‘suricata-update‘ feature and you should not need to do the…

Automation to Check and Update Docker Stack Images

Edit: Extra note about this post, the Internet, and Reddit – sharing your idea – is a great idea and is a chance to learn from your peers. Yup, what this post describes is actually all is rather unnecessary as if you don’t use the “–force-recreate” flag then a simple “docker-compose up -d –always-recreate-deps –build…

OPNSense and Enabling Suricata Rules

Update: This guide covers using OPNSense’s native Policy based Rule management, you can also use ‘suricata-update‘ to do similar, if not more, focused/tailored Rule management. If you are interested, please see our post about enabling the modification here Using Suricata-Update on OPNSense OPNSense is an Open Source FreeBSD router, firewall, and has a modern Suricata…

Secure Your OPNSense Router With CrowdSec Multi-Server Setup

This post will be edited over time, please feel free to come back and check for new content. Last edit: 11-25-2024 Goal: A HomeLab setup that protects itself This example HomeLab has at its core an OPNSense Router, smart switches with subnet zones, several VMs, a few Docker environments, and specifically for this version of…

ATom

Take the pen for inkDoesn’t trip in the sinkDraw water steeped with blink Layered prose saturated noiseEchoing or orbiting the toysRoll around bowl rink ploys Unit view collective trueSo without fibers bluePants due un-sew The wraps of energy classesLike object stasisIn cases because they says Don’t knock the time spentFor epoch is the hand sentAcross…