Suricata
Intrusion detection/prevention system and network security monitoring engine.
Contents
Output Tools
Operations, Monitoring and Troubleshooting
Automatic enumeration and maintenance of Suricata monitoring interfaces.
Mass deploy and update Suricata IDPS using Ansible IT automation platform.
Terraform module to setup Google Cloud packet mirroring and send packets to Suricata.
Programming Libraries and Toolkits
Dashboards and Templates
Development Tools
An implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and auto-completion to your preferred editor once it is configured.
Suricata IntelliSense Extension using the Suricata Language Server.
Documentation and Guides
Analysis Tools
Rule Sets
Suricata rules accompanying Fox-IT's QUANTUM 2015 blog/BroCon talk.
Suricata IDS alert rules for network anomaly detection from Travis Green.
Rule/Security Content Management and Handling
Tool to create dataset for suricata with indicators of MISP instances and add sightings in MISP if an indicator of dataset generates an alert.
Generate suricata-rules from collection of IOCs (JSON, CSV or flags) based on your suricata template.
Command-line tool to format and syntax highlight Suricata rules.