This CLI command displays the rule, packet, and alert statistics of the Suricata Snort engine.
Syntax:
show suricata sbstats
Sample output:
Snort Rule Stats:
Total Rules Processed:: 6
Total Rules Loaded:: 6
Total Rules Failed:: 0
Snort Packet Stats:
Total pkts sent to Suricata:: 18289
Total tcp ctrl pkts sent to Suricata:: 127
Total tcp v6 ctrl pkts sent to Suricata:: 0
Total tcp data pkts sent to Suricata:: 0
Total tcp v6 data pkts sent to Suricata:: 0
Total udp pkts sent to Suricata:: 18098
Total udp v6 pkts sent to Suricata:: 0
Total icmp pkts sent to Suricata:: 64
Total icmp v6 pkts sent to Suricata:: 0
Snort Alert Stats:
Total Alerts:: 0
Alerts with Drop Action:: 0
Alerts for TCP Ctrl Pkts:: 0
Alerts for TCP Ctrl Pkts, with Drop Action:: 0
Alerts for TCP(IPv6) Ctrl Pkts:: 0
Alerts for TCP(IPv6) Ctrl Pkts, with Drop Action:: 0
Alerts for TCP Data Pkts:: 0
Alerts for TCP Data Pkts with Drop Action:: 0
Alerts for TCP(IPv6) Data Pkts:: 0
Alerts for TCP(IPv6) Data Pkts with Drop Action:: 0
Alerts for UDP Pkts:: 0
Alerts for UDP Pkts with Drop Action:: 0
Alerts for UDP(IPv6) Pkts:: 0
Alerts for UDP(IPv6) Pkts with Drop Action:: 0
Alerts for ICMP Pkts:: 0
Alerts for ICMP Pkts with Drop Alerts:: 0
Alerts for ICMP(IPv6) Pkts:: 0
Alerts for ICMP(IPv6) with Drop Action:: 0
Ignored Alerts:: 0
Applicable to:
NS-series Sensors (except NS9600, NS7600, and NS3600 Sensors)