IPS

Configure the IPS (Intrusion Prevention System) behavior. The IPS will analyze all traffic through the firewall, looking for possible attacks and policy violations.

Depending on the configuration, the IPS can report a threat or block involved traffic.

Enabled Suricata IP
Enable or disable the IPS
Rule categories

Each rule category can be:

  • Enable: traffic matching rules from this categories will be reported
  • Block: traffic matching rules from this categories will be dropped
  • Disable: rules from this categories are ignored