mirror of https://github.com/OISF/suricata
protodetect: be more tolerant
Do not mask protocols on both directions with only first packet For instance : When the first packet is no valid DNS but on port 53 (a junk request) second packet (error response from server) does not get checked for DNS as first packet bit masked away DNS for both directions Ticket: #2757pull/7423/head
parent
b6407c4253
commit
edd163252d
Loading…
Reference in New Issue