suricata (1:8.0.7-2~exp1) experimental; urgency=medium

    The suricata service is no longer enabled and started when the package is
    installed. The shipped configuration uses the upstream default capture
    interface 'eth0', which does not exist on most systems, so the service
    used to end up in the 'failed' state right after installation. Suricata
    is also frequently installed only to analyse pcap files, where no service
    is wanted at all.

    For a first time installation, please configure at least the capture
    interface in the af-packet section and the HOME_NET variable in
    /etc/suricata/suricata.yaml, then enable and start the service.

    Existing installations are not affected: systemd presets are only
    evaluated when a package is installed for the first time, so a service
    that is enabled today stays enabled.

    Please see the README.Debian file for details.

 -- Andreas Dolp <dev@andreas-dolp.de>  Tue, 18 Aug 2026 15:59:02 +0200

suricata (1:8.0.1-1) unstable; urgency=medium

    Support for sysv init files and configuration via /etc/default/suricata
    has been removed. The systemd-based setup requires a different
    customization approach (e.g. to enable nfqueue mode or configure
    inspection interfaces). Please see the README.Debian file to learn
    about configuration as intended now.

 -- Sascha Steinbiss <satta@debian.org>  Thu, 21 Aug 2025 19:30:00 +0200
