Intrusion Detection with Suricata

intermediate Hands-on lab 50 min 3 tasksSubscription

Stand up Suricata as a signature-based IDS, dissect and write detection rules, enable them, and triage the resulting alerts down to the firing SID in eve.json and fast.log.

This lab is available with a Purple Edge subscription. Sign in to view the full overview and start the lab.

Part of these paths

Unlock this lab

Launch the lab in your browser. Real Kali, Ubuntu and Windows targets, guided step by step. No setup, no VM downloads.

Updated 2026-06-15