Conclusion

  • We successfully configured Suricata with custom HTTP rule
  • We were able to successfully mirror port 80 traffic and triggered the rule on Suricata.