I apologize if this was addressed in another thread, but could not easily find it if it was.
I just installed SELKS 7 docker on UBUNTU 2.04 hyper-v VM. I have two interfaces, eth0 which is the interface for SSH/Web/etc and ETH1 which is connected to a mirrored port for sniffing.
When running the easy install, it prompted me for the monitoring port, in which I entered ETH1, but it seems that nothing is configured correctly and ETH1 is no longer available when listing interfaces in ifconfig. I can still see ETH0, LO, nad a number of veth, br-, and docker0 interfaces. The suricata.yaml file still shows the default port of ETH0, so nothing was configured by the easy install.
None of the above ports are set in promiscuous mode, and I am not sure if any of these ports equates to the original ETH1 port. I have not used docker in the past, so I have a very rudimentary understanding of how it works. I assumed, maybe wrongly, that the easy install would have properly configured the monitoring port or Suricata, as it prompted me for that.
How do I identify if any of these ports equate to the original ETH0, or did I somehow screw up the original installation?
Any help is appreciated.
Shane