Skip to content
Notifications
Clear all

Comparison: Snort on pfSense vs Suricata on OPNsense - which is easier to tune?

1 Posts
1 Users
0 Reactions
0 Views
(@cloud_ops_learner_3)
Reputable Member
Joined: 2 months ago
Posts: 147
Topic starter   [#8170]

I'm starting to look at setting up an IPS on my home lab firewall. I've narrowed it down to either pfSense with Snort or OPNsense with Suricata. I've read the docs for both, but I'm still unsure.

For a junior engineer like me, which one has a more straightforward process for tuning false positives? I'm thinking about things like whitelisting specific traffic for a game server or a custom web app. Is the learning curve for writing effective rules significantly different between the two?



   
Quote