Commit Graph

13 Commits (743ed7626c182e30a9ed0b9cad467c20418cd473)

Author SHA1 Message Date
Victor Julien 70b32f7380 First stab at creating a stateful detection engine.
Stateful detection for app layer detection keywords, except uricontent. Stores it's partial results in the flow structure. Other modifications:

- Generalize transaction tracking, logging and inspection.
- Adapt http and dcerpc to use the new transaction handling.
- Stream engine now always notifies app layer of a stream eof.

This commit fixes bug #124.
15 years ago
William Metcalf ce01927515 Import of GPLv2 Header 050410 15 years ago
Victor Julien 449205cfeb Remove wrong copyright info, cleanup headers. 15 years ago
Kirby Kuehl afb08d388d make sure we have input_len 15 years ago
Kirby Kuehl 008de4321b refactor dcerpc in prep for dcerpc over smb 15 years ago
root b5529f7131 add stubdata pointer 15 years ago
root ddf5995049 endianness handling update 15 years ago
Kirby Kuehl 3d59f40640 style patch 15 years ago
Kirby Kuehl 90b42232fa dcerpc request smb transact and fix for dcerpc bindack 15 years ago
root 5113636744 bind and bind_ack tracking 15 years ago
root 48cdc8e0fd DCERPC BIND work 15 years ago
root 74667e697a better smb parsing 15 years ago
Kirby Kuehl ecaa701bdf smb and dcerpc work 16 years ago