Suricata (software)

Suricata is an open-source based intrusion detection system (IDS) and intrusion prevention system (IPS). It was developed by the Open Information Security Foundation (OISF). A beta version was released in December 2009, with the first standard release following in July 2010.

Features

Like other IDSes, Suricata provides threat detection capabilities. Like a firewall, Suricata provides traffic filtering and monitoring, but Suricata provides network administrators with the ability to write and enforce detection rules.

Suricata is able to detect common attack vectors such as port scanning, denial-of-service, pass-the-hash, and brute-force attacks.

Typically, a major update of Suricata is released every 3 months.

Ruleset

Suricata uses a ruleset to perform detection and threat analysis.

See also

References

Uses material from the Wikipedia article Suricata (software), released under the CC BY-SA 4.0 license.