squid:alerts:suricata_tls_invalid_record_traffic
Squid - Alerts - SURICATA TLS invalid record/traffic
Suppress.
suppress gen_id 1, sig_id 2230002
Probably false positives.
There have been some reports of flakiness with the TLS decoder rules in Suricata of late.
There is a post on the Suricata Redmine site about some other TLS issues.
squid/alerts/suricata_tls_invalid_record_traffic.txt · Last modified: 2021/01/04 20:11 by peter