Got latest Nethserver running as aVM on a Ubuntuserver using Opennebula.
Acts as DNS/DHCP/Firewall/IPS/IDS/Proxy/router and was working fine with snort .
Some lower bandwidth has to be expected with that setup, but since the switch to suricata it has really turned sour.
I switched off the proxy function, went to connectivity and I only get around 250MBit/s.
Saw some really high spikes in CPU usage (never had them before), dropped in another CPU core (it was running with only one before) but that did not help either.
When I disable suricata comepletely I get around 8,5 GBit/s from host to client, enabling it and trying any of the settings gets me back to the the 250MBit/s.
Really would not mind the 250s if I had Proxy/AV and suricata settings at security level, but for me the settings do not really seem to do anything.
Anybody got a hint ?