Learn about the 1.0.1 release of the IPS Signature Converter
Snort and Suricata are open-source intrusion prevention
system (IPS) tools that use uniquely formatted rules to detect threats. The
IPS Signature Converter plugin enables you to leverage these rules
for immediate threat protection by translating them into custom Palo Alto Networks threat
signatures. You can then register the custom signatures on
Palo Alto Networks firewalls in specified device groups and enforce
policy using Vulnerability Protection and Anti-Spyware Security Profiles.
Additionally, you can export rules that list IP address indicators
of compromise (IOC) and use the resultant text file as an external dynamic list to
enforce policy on the entries contained in the list.
You can download the IPS Signature Converter plugin for Panorama™
10.0 or later releases from the Customer Support Portal or directly from
Panorama can push the signatures that it converts to firewalls running
10.0 or later release.
To install the plugin, you must meet the following system requirements: