Netgate SG-1000 microFirewall

Author Topic: IPv6 Suricata IPS Rule  (Read 108 times)

0 Members and 1 Guest are viewing this topic.

Offline gowhadsteen

  • Newbie
  • *
  • Posts: 6
  • Karma: +0/-0
    • View Profile
IPv6 Suricata IPS Rule
« on: February 14, 2018, 11:35:48 am »
Hello guys, I'm student and I've been using Pfsense and Suricata as IDS/IPS for 3 months. I've been doing a research, penetration test and collection information. I'm using Dualstack network on my pfsense. In several of penetration test that I've been doing, it show that pfsense could block many penetration in IPv6 but not for Port Scanning. Attacker could show all opened ports when doing port scanning in IPv6.

Can't suricata block port scanning in IPv6? Or Something's wrong with the rule? Btw I use emerging-scan.rules