I am actually trying to link Pve-IPS output to suricata. I am running suricata using the NFQ mode and im sending traffic to suricata with the gateway-scenario using the following cmd: # iptables -I FORWARD -j PVEFW-IPS
The problem is every time i restart the host the added rule is gone (-A FORWARD -j PVEFW-IPS) and there is no rules-file where i can modify it directly. It seems that proxmox generate the rules directly.
Any idea how can i solve this issue ??
Thanks
The problem is every time i restart the host the added rule is gone (-A FORWARD -j PVEFW-IPS) and there is no rules-file where i can modify it directly. It seems that proxmox generate the rules directly.
Any idea how can i solve this issue ??
Thanks