[general] # Select the haka configuration file to use configuration = "tcpfilter.lua" # Optionally select the number of thread to use. #thread = 4 # Pass-through mode # If yes, haka will only inspect packet # If no, it means that haka can also modify and create packet pass-through = no [packet] # Select the capture model, nfqueue or pcap module = "packet/nfqueue" # Select the interfaces to listen to interfaces = "lo" #interfaces = "eth0" # Select packet dumping for nfqueue #dump = yes #dump_input = "/tmp/input.pcap" #dump_output = "/tmp/output.pcap" [log] # Select the log module module = "log/syslog" [alert] # Select the alert module module = "alert/syslog"