|
|
|
@ -30,21 +30,58 @@
|
|
|
|
|
#include "decode.h"
|
|
|
|
|
#include "flow.h"
|
|
|
|
|
|
|
|
|
|
/** tx logger function pointer type */
|
|
|
|
|
/** \brief Transaction logger function pointer type. */
|
|
|
|
|
typedef int (*TxLogger)(ThreadVars *, void *thread_data, const Packet *, Flow *f, void *state, void *tx, uint64_t tx_id);
|
|
|
|
|
|
|
|
|
|
/** tx logger condition function pointer type,
|
|
|
|
|
* must return true for tx that should be logged
|
|
|
|
|
/** \brief Transaction logger condition function pointer type.
|
|
|
|
|
*
|
|
|
|
|
* If a TxLoggerCondition is provided to the registration function,
|
|
|
|
|
* the logger function will only be called if this return true.
|
|
|
|
|
*/
|
|
|
|
|
typedef bool (*TxLoggerCondition)(
|
|
|
|
|
ThreadVars *, const Packet *, void *state, void *tx, uint64_t tx_id);
|
|
|
|
|
|
|
|
|
|
int OutputRegisterTxLogger(LoggerId id, const char *name, AppProto alproto, TxLogger LogFunc,
|
|
|
|
|
/** \brief Register a transaction logger.
|
|
|
|
|
*
|
|
|
|
|
* \param logger_id An ID used to distinguish this logger from others
|
|
|
|
|
* while profiling. For transaction logging this is only used for
|
|
|
|
|
* some internal state tracking.
|
|
|
|
|
*
|
|
|
|
|
* \param name An informational name for this logger. Used for
|
|
|
|
|
* debugging.
|
|
|
|
|
*
|
|
|
|
|
* \param alproto The application layer protocol this logger is for,
|
|
|
|
|
* for example ALPROTO_DNS.
|
|
|
|
|
*
|
|
|
|
|
* \param LogFunc A pointer to the logging function.
|
|
|
|
|
*
|
|
|
|
|
* \param initdata Initialization data that will be provided to the
|
|
|
|
|
* ThreadInit callback.
|
|
|
|
|
*
|
|
|
|
|
* \param tc_log_progress The to_client progress state required for
|
|
|
|
|
* the log function to be called.
|
|
|
|
|
*
|
|
|
|
|
* \param ts_log_progress The to_server progress state required for
|
|
|
|
|
* the log function to be called.
|
|
|
|
|
*
|
|
|
|
|
* \param LogCondition A pointer to a function that will be called
|
|
|
|
|
* before the log function to test if the log function should be
|
|
|
|
|
* called.
|
|
|
|
|
*
|
|
|
|
|
* \param ThreadInitFunc Callback a thread initialization function,
|
|
|
|
|
* initdata will be provided.
|
|
|
|
|
*
|
|
|
|
|
* \param ThreadDeinitFunc Callback to a thread de-initialization
|
|
|
|
|
* function for cleanup.
|
|
|
|
|
*/
|
|
|
|
|
int SCOutputRegisterTxLogger(LoggerId id, const char *name, AppProto alproto, TxLogger LogFunc,
|
|
|
|
|
void *, int tc_log_progress, int ts_log_progress, TxLoggerCondition LogCondition,
|
|
|
|
|
ThreadInitFunc, ThreadDeinitFunc);
|
|
|
|
|
|
|
|
|
|
/** Internal function: private API. */
|
|
|
|
|
void OutputTxLoggerRegister (void);
|
|
|
|
|
|
|
|
|
|
/** Internal function: private API. */
|
|
|
|
|
void OutputTxShutdown(void);
|
|
|
|
|
|
|
|
|
|
#endif /* SURICATA_OUTPUT_TX_H */
|
|
|
|
|