Menu
ls111's Cybersecurity Blog
  • Home
  • Contact
ls111's Cybersecurity Blog

How to use CrowdSec on OPNSense including a NAXSI WAF integration.

Posted on October 25, 2022September 19, 2023 by wp_writer

In this video, I am going to show you how to install CrowdSec, a popular open source collaborative security tool on your OPNSense firewall. In addition to this, I will show you how we can integrate CrowdSec with our already installed NAXSI WAF and leverage it to ban repeated attacks from threat actors attempting to launch injection attacks on our web applications.

Some topics that we will cover:

  • Understanding how CrowdSec works.
  • Creating and implementing a custom CrowdSec parser and scenario that extracts data from our NAXSI WAF logs.
  • Modification of CrowdSec profile.yaml and setup of decisions and ban duration.
  • Basic understanding of the CrowdSec command line tool.

So if you are ready to make your OPNSense firewall even more powerful and complete, jump straight into the video now! P.S. – Also, please don’t forget to like and subscribe!

Links used in video:

https://github.com/ls111-cybersec/opnsense-crowdsec-naxsi-integration https://docs.crowdsec.net/docs/concepts

https://www.crowdsec.net/product/threat-intelligence

https://www.crowdsec.net/

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Welcome to my blog! I discuss and showcase various cybersecurity topics. If you prefer to learn through watching video, please check out my YouTube channel, most of the content here also has a video version.

YouTube Channel
GitHub

Search by Category

  • Active Directory
  • Blue Team/Defensive
  • Cyber Security Lab Building Series
  • datadog
  • docker
  • Elasticsearch
  • General Cybersecurity
  • Kibana
  • Logstash
  • Network Security
  • OPNSense Firewall
  • Red Team/Pen Testing
  • SASE
  • Security Compliance
  • SIEM
  • Splunk Enterprise
  • TryHackMe Labs
  • Ubuntu Linux
  • Virtualization
  • Wazuh SIEM & XDR
  • Zenarmor NGFW

Search by Date

  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • December 2022
  • October 2022
  • September 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
©2025 ls111's Cybersecurity Blog | Powered by Superb Themes