[3/5] convert-snort: Adjust code to use changedmodify_sids_file function.

Message ID 20190605185636.9952-3-stefan.schantl@ipfire.org
State Accepted
Commit f1add9a8dd5271af669ee0831f30b207b33d158d
Headers
Series [1/5] suricata: correct rule actions in IPS mode |

Commit Message

Stefan Schantl June 6, 2019, 4:56 a.m. UTC
  Signed-off-by: Stefan Schantl <stefan.schantl@ipfire.org>
---
 config/suricata/convert-snort | 12 +-----------
 1 file changed, 1 insertion(+), 11 deletions(-)
  

Patch

diff --git a/config/suricata/convert-snort b/config/suricata/convert-snort
index 83931fa5b..5ed36954f 100644
--- a/config/suricata/convert-snort
+++ b/config/suricata/convert-snort
@@ -196,18 +196,8 @@  if (-f $guardian_meta) {
 ## Step 5: Generate and write the file to modify the ruleset.
 #
 
-# Converters default is to only monitor the traffic, so set the IDS action to
-# "alert".
-my $IDS_action = "alert";
-
-# Check if the traffic only should be monitored.
-if ($idssettings{"MONITOR_TRAFFIC_ONLY"} eq "off") {
-	# Swith IDS action to alert only.
-	$IDS_action = "drop";
-}
-
 # Call subfunction and pass the desired IDS action.
-&IDS::write_modify_sids_file($IDS_action);
+&IDS::write_modify_sids_file();
 
 # Set correct ownership.
 &IDS::set_ownership("$IDS::modify_sids_file");