Category: Blog

July 16, 2026

Suri Oculus 4.0 – Local Rules Management

One of the areas I’m currently working on for Suri Oculus 4.0 is improving the management of local Suricata rules. Many Suricata deployments eventually accumulate a growing collection of custom rules. These may include internal detections, IoC-based rules, environment-specific signatures, or temporary rules created during […]

May 4, 2026

Reducing the Number of Supported Operating Systems — A Practical Decision

Over time, any growing project faces the same issue: the expansion of supported platforms begins to slow down development instead of accelerating adoption. In Suri Oculus, we reached that point. We currently build and maintain packages for multiple distributions: RHEL, Fedora, Debian, Ubuntu, and their […]

March 3, 2026

Who Is the Suri Oculus Project Designed For?

Suri Oculus is not just a web interface for Suricata.It is a traffic management, visualization, and analytics system built around one core idea: understanding network behavior — not just collecting alerts. It is important to clearly define who this project is truly for. System Administrators […]

February 28, 2026

Proper Suricata Configuration for Suri Oculus

A Practical Guide to Setup, Rules, and Testing When deploying Suri Oculus, it is not enough to simply start Suricata. It must be configured correctly to ensure: Proper traffic capture Full signature loading Support for custom rules IOC integration Clean data for behavioral analysis Below […]

February 14, 2026

Suri Oculus Extension Module — In Development

Work is currently underway on an extension module for Suri Oculus.The release is planned for May 2026. The extension focuses on a different analytical perspective: not event-centric, but host-centric analysis. Instead of examining individual alerts in isolation, the system will analyze device behavior over time. […]