Commit Graph

13 Commits (4ed0ca14bc8c81afbc4b94dfab3aa76465c68ef4)

Author SHA1 Message Date
Victor Julien 70b32f7380 First stab at creating a stateful detection engine.
Stateful detection for app layer detection keywords, except uricontent. Stores it's partial results in the flow structure. Other modifications:

- Generalize transaction tracking, logging and inspection.
- Adapt http and dcerpc to use the new transaction handling.
- Stream engine now always notifies app layer of a stream eof.

This commit fixes bug #124.
15 years ago
William Metcalf ce01927515 Import of GPLv2 Header 050410 16 years ago
Victor Julien 449205cfeb Remove wrong copyright info, cleanup headers. 16 years ago
Kirby Kuehl afb08d388d make sure we have input_len 16 years ago
Kirby Kuehl 008de4321b refactor dcerpc in prep for dcerpc over smb 16 years ago
root b5529f7131 add stubdata pointer 16 years ago
root ddf5995049 endianness handling update 16 years ago
Kirby Kuehl 3d59f40640 style patch 16 years ago
Kirby Kuehl 90b42232fa dcerpc request smb transact and fix for dcerpc bindack 16 years ago
root 5113636744 bind and bind_ack tracking 16 years ago
root 48cdc8e0fd DCERPC BIND work 16 years ago
root 74667e697a better smb parsing 16 years ago
Kirby Kuehl ecaa701bdf smb and dcerpc work 16 years ago