.. |
tests
|
lzma: make mandatory
|
6 years ago |
Makefile.am
|
build: cbindgen
|
6 years ago |
action-globals.h
|
…
|
|
alert-debuglog.c
|
…
|
|
alert-debuglog.h
|
…
|
|
alert-fastlog.c
|
fastlog: apply icmp type logic to icmpv6 too
|
6 years ago |
alert-fastlog.h
|
…
|
|
alert-prelude.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
alert-prelude.h
|
…
|
|
alert-syslog.c
|
alert-syslog: remove stale comments
|
6 years ago |
alert-syslog.h
|
…
|
|
alert-unified2-alert.c
|
classtype: increase id size
|
6 years ago |
alert-unified2-alert.h
|
…
|
|
app-layer-dcerpc-common.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
app-layer-dcerpc-udp.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
app-layer-dcerpc-udp.h
|
…
|
|
app-layer-dcerpc.c
|
dcerpc: add tx detect flags
|
6 years ago |
app-layer-dcerpc.h
|
dcerpc: add tx detect flags
|
6 years ago |
app-layer-detect-proto.c
|
app-layer: remove obsolete msn protocol detection
|
6 years ago |
app-layer-detect-proto.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
app-layer-dhcp.c
|
build: cbindgen
|
6 years ago |
app-layer-dhcp.h
|
…
|
|
app-layer-dnp3-objects.c
|
…
|
|
app-layer-dnp3-objects.h
|
…
|
|
app-layer-dnp3.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
app-layer-dnp3.h
|
detect/dnp3: add dnp3.data with v2 api support
|
6 years ago |
app-layer-dns-common.c
|
app-layer/logging: protocol parser updates
|
6 years ago |
app-layer-dns-common.h
|
build: cbindgen
|
6 years ago |
app-layer-dns-tcp.c
|
build: cbindgen
|
6 years ago |
app-layer-dns-tcp.h
|
dns: rename rust files and funcs
|
6 years ago |
app-layer-dns-udp.c
|
build: cbindgen
|
6 years ago |
app-layer-dns-udp.h
|
dns: rename rust files and funcs
|
6 years ago |
app-layer-enip-common.c
|
enip: fix compile warnings in gcc-8
|
6 years ago |
app-layer-enip-common.h
|
enip: add tx detect flags
|
6 years ago |
app-layer-enip.c
|
enip: add tx detect flags
|
6 years ago |
app-layer-enip.h
|
…
|
|
app-layer-events.c
|
app-layer: Initial app layer logging
|
6 years ago |
app-layer-events.h
|
app-layer: Extend event container with progress
|
6 years ago |
app-layer-expectation.c
|
…
|
|
app-layer-expectation.h
|
…
|
|
app-layer-ftp.c
|
build: cbindgen
|
6 years ago |
app-layer-ftp.h
|
ftpdata: add tx detect flags
|
6 years ago |
app-layer-htp-body.c
|
…
|
|
app-layer-htp-body.h
|
…
|
|
app-layer-htp-file.c
|
http/file: modernize unittests
|
6 years ago |
app-layer-htp-file.h
|
http: logs content range
|
6 years ago |
app-layer-htp-libhtp.c
|
htp: fix potential (but unlikely) memleak in uri normalization
|
7 years ago |
app-layer-htp-libhtp.h
|
…
|
|
app-layer-htp-mem.c
|
…
|
|
app-layer-htp-mem.h
|
…
|
|
app-layer-htp-xff.c
|
…
|
|
app-layer-htp-xff.h
|
…
|
|
app-layer-htp.c
|
htp: close request only from request side
|
6 years ago |
app-layer-htp.h
|
http: sets compression bomb limit
|
6 years ago |
app-layer-ikev2.c
|
build: cbindgen
|
6 years ago |
app-layer-ikev2.h
|
ikev2: clean up c glue code
|
6 years ago |
app-layer-krb5.c
|
build: cbindgen
|
6 years ago |
app-layer-krb5.h
|
…
|
|
app-layer-modbus.c
|
modbus: Correct typo
|
6 years ago |
app-layer-modbus.h
|
modbus: add tx detect flags
|
6 years ago |
app-layer-nbss.h
|
…
|
|
app-layer-nfs-tcp.c
|
build: cbindgen
|
6 years ago |
app-layer-nfs-tcp.h
|
…
|
|
app-layer-nfs-udp.c
|
build: cbindgen
|
6 years ago |
app-layer-nfs-udp.h
|
…
|
|
app-layer-ntp.c
|
build: cbindgen
|
6 years ago |
app-layer-ntp.h
|
…
|
|
app-layer-parser.c
|
app-layer: optimize inspection id tracking
|
6 years ago |
app-layer-parser.h
|
build: cbindgen
|
6 years ago |
app-layer-protos.c
|
app-layer: remove obsolete msn protocol detection
|
6 years ago |
app-layer-protos.h
|
app-layer: remove obsolete msn protocol detection
|
6 years ago |
app-layer-rdp.c
|
build: cbindgen
|
6 years ago |
app-layer-rdp.h
|
protocol parser: rdp
|
6 years ago |
app-layer-register.c
|
app-layer: add tx detect functions to register struct
|
6 years ago |
app-layer-register.h
|
app-layer: add tx detect functions to register struct
|
6 years ago |
app-layer-sip.c
|
build: cbindgen
|
6 years ago |
app-layer-sip.h
|
build: cbindgen
|
6 years ago |
app-layer-smb.c
|
build: cbindgen
|
6 years ago |
app-layer-smb.h
|
rust/smb: rename files and code from RustSMB to SMB
|
6 years ago |
app-layer-smtp.c
|
files: add call for setting inspect sizes
|
6 years ago |
app-layer-smtp.h
|
smtp: implement min_inspect_depth logic
|
6 years ago |
app-layer-snmp.c
|
build: cbindgen
|
6 years ago |
app-layer-snmp.h
|
Add SNMP (v1/v2c/v3) application layer
|
6 years ago |
app-layer-ssh.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
app-layer-ssh.h
|
…
|
|
app-layer-ssl.c
|
app-layer: make dns,smb,tls parsers less noisy w/o config
|
6 years ago |
app-layer-ssl.h
|
tls/ja3: add way to check active config
|
6 years ago |
app-layer-template-rust.c
|
build: cbindgen
|
6 years ago |
app-layer-template-rust.h
|
…
|
|
app-layer-template.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
app-layer-template.h
|
…
|
|
app-layer-tftp.c
|
build: cbindgen
|
6 years ago |
app-layer-tftp.h
|
tftp: c glue code cleanup
|
6 years ago |
app-layer.c
|
debug/validation: check tcp/app-layer data lengths
|
6 years ago |
app-layer.h
|
stream: fix midstream reverse flow handling
|
6 years ago |
conf-yaml-loader.c
|
config: use logging instead of stderr
|
6 years ago |
conf-yaml-loader.h
|
…
|
|
conf.c
|
…
|
|
conf.h
|
suricata: --data-dir option
|
6 years ago |
counters.c
|
counters: improve handling missing global config
|
6 years ago |
counters.h
|
stats: add global way to check if API is enabled
|
6 years ago |
datasets-md5.c
|
datasets: match on lists of data
|
6 years ago |
datasets-md5.h
|
datasets: match on lists of data
|
6 years ago |
datasets-reputation.h
|
datasets: match on lists of data
|
6 years ago |
datasets-sha256.c
|
datasets: match on lists of data
|
6 years ago |
datasets-sha256.h
|
datasets: match on lists of data
|
6 years ago |
datasets-string.c
|
dataset: fix string length handling in hash
|
6 years ago |
datasets-string.h
|
datasets: match on lists of data
|
6 years ago |
datasets.c
|
datasets: make clear the feature is experimental
|
6 years ago |
datasets.h
|
datasets: fix hash table config
|
6 years ago |
debug.h
|
…
|
|
decode-afl.c
|
afl/decode: fix stats related memleak reports
|
6 years ago |
decode-erspan.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-erspan.h
|
…
|
|
decode-ethernet.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-ethernet.h
|
ethernet: fix next packet size on DCE packet
|
6 years ago |
decode-events.c
|
mpls: check buffer length before peeking at next header
|
6 years ago |
decode-events.h
|
mpls: check buffer length before peeking at next header
|
6 years ago |
decode-gre.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-gre.h
|
…
|
|
decode-icmpv4.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-icmpv4.h
|
…
|
|
decode-icmpv6.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-icmpv6.h
|
…
|
|
decode-ipv4.c
|
ipv4: continue parsing options after invalid option
|
6 years ago |
decode-ipv4.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-ipv6.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-ipv6.h
|
decode/ipv6: track length of ext hdrs
|
6 years ago |
decode-mpls.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-mpls.h
|
…
|
|
decode-null.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-null.h
|
…
|
|
decode-ppp.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-ppp.h
|
…
|
|
decode-pppoe.c
|
decode/pppoe: fix potential crash in debug statement
|
6 years ago |
decode-pppoe.h
|
…
|
|
decode-raw.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-raw.h
|
…
|
|
decode-sctp.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-sctp.h
|
…
|
|
decode-sll.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-sll.h
|
…
|
|
decode-tcp.c
|
decode/tcp: accept TCP fast open cookie request
|
6 years ago |
decode-tcp.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-template.c
|
…
|
|
decode-template.h
|
…
|
|
decode-teredo.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-teredo.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-udp.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-udp.h
|
…
|
|
decode-vlan.c
|
mpls: Allow MPLS after vlan.
|
6 years ago |
decode-vlan.h
|
…
|
|
decode-vxlan.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
decode-vxlan.h
|
decoder/vxlan: improvements and cleanups
|
6 years ago |
decode.c
|
packet: set unique pkt_src 'flush' packets
|
6 years ago |
decode.h
|
packet: set unique pkt_src 'flush' packets
|
6 years ago |
defrag-config.c
|
…
|
|
defrag-config.h
|
…
|
|
defrag-hash.c
|
…
|
|
defrag-hash.h
|
…
|
|
defrag-queue.c
|
…
|
|
defrag-queue.h
|
…
|
|
defrag-timeout.c
|
…
|
|
defrag-timeout.h
|
…
|
|
defrag.c
|
defrag: check minimum size of reassembled packet
|
6 years ago |
defrag.h
|
…
|
|
detect-app-layer-event.c
|
signature: Fixes memory leak in parsing app layer event
|
6 years ago |
detect-app-layer-event.h
|
…
|
|
detect-app-layer-protocol.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-app-layer-protocol.h
|
…
|
|
detect-asn1.c
|
detect/asn1: fix offset bounds checking
|
6 years ago |
detect-asn1.h
|
…
|
|
detect-base64-data.c
|
detect-base64: fix url in list keywords commands
|
6 years ago |
detect-base64-data.h
|
…
|
|
detect-base64-decode.c
|
detect-base64: fix url in list keywords commands
|
6 years ago |
detect-base64-decode.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
detect-bsize.c
|
detect/bsize: support transforms in case w/o content
|
6 years ago |
detect-bsize.h
|
…
|
|
detect-bypass.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-bypass.h
|
…
|
|
detect-byte-extract.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-byte-extract.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
detect-bytejump.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-bytejump.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
detect-bytetest.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-bytetest.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
detect-cipservice.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-cipservice.h
|
…
|
|
detect-classtype.c
|
detect/classtype: implement strict parsing option
|
6 years ago |
detect-classtype.h
|
…
|
|
detect-content.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-content.h
|
…
|
|
detect-csum.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-csum.h
|
…
|
|
detect-datarep.c
|
datasets: make clear the feature is experimental
|
6 years ago |
detect-datarep.h
|
datasets: match on lists of data
|
6 years ago |
detect-dataset.c
|
datasets: make clear the feature is experimental
|
6 years ago |
detect-dataset.h
|
datasets: match on lists of data
|
6 years ago |
detect-dce-iface.c
|
build: cbindgen
|
6 years ago |
detect-dce-iface.h
|
…
|
|
detect-dce-opnum.c
|
build: cbindgen
|
6 years ago |
detect-dce-opnum.h
|
…
|
|
detect-dce-stub-data.c
|
build: cbindgen
|
6 years ago |
detect-dce-stub-data.h
|
…
|
|
detect-depth.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-depth.h
|
…
|
|
detect-detection-filter.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-detection-filter.h
|
…
|
|
detect-distance.c
|
detect/distance: improve value parsing and fix broken test
|
7 years ago |
detect-distance.h
|
…
|
|
detect-dnp3.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-dnp3.h
|
…
|
|
detect-dns-opcode.c
|
build: cbindgen
|
6 years ago |
detect-dns-opcode.h
|
dns/detect: dns.opcode keyword
|
6 years ago |
detect-dns-query.c
|
build: cbindgen
|
6 years ago |
detect-dns-query.h
|
…
|
|
detect-dsize.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-dsize.h
|
…
|
|
detect-engine-address-ipv4.c
|
…
|
|
detect-engine-address-ipv4.h
|
…
|
|
detect-engine-address-ipv6.c
|
…
|
|
detect-engine-address-ipv6.h
|
…
|
|
detect-engine-address.c
|
detect/parse: track negation during address parsing
|
6 years ago |
detect-engine-address.h
|
detect/parse: track negation during address parsing
|
6 years ago |
detect-engine-alert.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-engine-alert.h
|
…
|
|
detect-engine-analyzer.c
|
analysis: exit if table entries are stale
|
6 years ago |
detect-engine-analyzer.h
|
detect/analyzer: remove HAVE_LIBJANSSON cpp guards
|
6 years ago |
detect-engine-build.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
detect-engine-build.h
|
detect/parse: set the type of signature early
|
6 years ago |
detect-engine-content-inspection.c
|
detect: Fix spelling errors
|
6 years ago |
detect-engine-content-inspection.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
detect-engine-dcepayload.c
|
…
|
|
detect-engine-dcepayload.h
|
…
|
|
detect-engine-dns.c
|
…
|
|
detect-engine-dns.h
|
…
|
|
detect-engine-enip.c
|
…
|
|
detect-engine-enip.h
|
…
|
|
detect-engine-event.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-engine-event.h
|
…
|
|
detect-engine-file.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-engine-file.h
|
…
|
|
detect-engine-iponly.c
|
detect/iponly: debug output improvements
|
6 years ago |
detect-engine-iponly.h
|
…
|
|
detect-engine-loader.c
|
detect/parse: allow signature parsing to fail silently
|
6 years ago |
detect-engine-loader.h
|
…
|
|
detect-engine-modbus.c
|
…
|
|
detect-engine-modbus.h
|
…
|
|
detect-engine-mpm.c
|
mpm: Fix typos and spelling errors
|
6 years ago |
detect-engine-mpm.h
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-engine-payload.c
|
debug: make it easier to trace flush logic
|
6 years ago |
detect-engine-payload.h
|
…
|
|
detect-engine-port.c
|
detect/port: more cleanups
|
6 years ago |
detect-engine-port.h
|
detect/port: more cleanups
|
6 years ago |
detect-engine-prefilter-common.c
|
…
|
|
detect-engine-prefilter-common.h
|
…
|
|
detect-engine-prefilter.c
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-engine-prefilter.h
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-engine-profile.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
detect-engine-profile.h
|
…
|
|
detect-engine-proto.c
|
…
|
|
detect-engine-proto.h
|
…
|
|
detect-engine-register.c
|
detect/sip.response_line: add sticky buffer
|
6 years ago |
detect-engine-register.h
|
detect: use named enum for keyword types
|
6 years ago |
detect-engine-siggroup.c
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-engine-siggroup.h
|
…
|
|
detect-engine-sigorder.c
|
…
|
|
detect-engine-sigorder.h
|
…
|
|
detect-engine-state.c
|
detect/test: update test for file prune changes
|
6 years ago |
detect-engine-state.h
|
detect/files: fix file sigs state handling
|
6 years ago |
detect-engine-tag.c
|
…
|
|
detect-engine-tag.h
|
…
|
|
detect-engine-threshold.c
|
…
|
|
detect-engine-threshold.h
|
…
|
|
detect-engine.c
|
detect-engine: check for tx detect flag support
|
6 years ago |
detect-engine.h
|
src/detect: check DetectBufferSetActiveList return code
|
6 years ago |
detect-fast-pattern.c
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-fast-pattern.h
|
…
|
|
detect-file-data.c
|
detect/file.data: fix buffer reusing id 0
|
6 years ago |
detect-file-data.h
|
…
|
|
detect-file-hash-common.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-file-hash-common.h
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-fileext.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-fileext.h
|
…
|
|
detect-filemagic.c
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-filemagic.h
|
detect/file.magic: add sticky buffer
|
6 years ago |
detect-filemd5.c
|
…
|
|
detect-filemd5.h
|
…
|
|
detect-filename.c
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-filename.h
|
…
|
|
detect-filesha1.c
|
…
|
|
detect-filesha1.h
|
…
|
|
detect-filesha256.c
|
…
|
|
detect-filesha256.h
|
…
|
|
detect-filesize.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-filesize.h
|
…
|
|
detect-filestore.c
|
filestore: don't assume flow is TCP
|
6 years ago |
detect-filestore.h
|
detect/filestore: use postmatch callback
|
6 years ago |
detect-flow.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-flow.h
|
…
|
|
detect-flowbits.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
detect-flowbits.h
|
…
|
|
detect-flowint.c
|
cleanup: eliminate warnings/errors with debug build on macos
|
6 years ago |
detect-flowint.h
|
…
|
|
detect-flowvar.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-flowvar.h
|
…
|
|
detect-fragbits.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-fragbits.h
|
…
|
|
detect-fragoffset.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-fragoffset.h
|
…
|
|
detect-ftpbounce.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-ftpbounce.h
|
…
|
|
detect-ftpdata.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-ftpdata.h
|
…
|
|
detect-geoip.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-geoip.h
|
detect/geoip: migrate to GeoIP2 database format
|
6 years ago |
detect-gid.c
|
…
|
|
detect-gid.h
|
…
|
|
detect-hostbits.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-hostbits.h
|
…
|
|
detect-http-accept-enc.c
|
detect/http: Use v2 inspect and mpm engines
|
6 years ago |
detect-http-accept-enc.h
|
…
|
|
detect-http-accept-lang.c
|
detect/http: Use v2 inspect and mpm engines
|
6 years ago |
detect-http-accept-lang.h
|
…
|
|
detect-http-accept.c
|
detect/http: Use v2 inspect and mpm engines
|
6 years ago |
detect-http-accept.h
|
…
|
|
detect-http-client-body.c
|
detect: add http.request_body sticky buffer
|
7 years ago |
detect-http-client-body.h
|
…
|
|
detect-http-connection.c
|
detect/http: Use v2 inspect and mpm engines
|
6 years ago |
detect-http-connection.h
|
…
|
|
detect-http-content-len.c
|
detect/http: Use v2 inspect and mpm engines
|
6 years ago |
detect-http-content-len.h
|
…
|
|
detect-http-content-type.c
|
detect/http: Use v2 inspect and mpm engines
|
6 years ago |
detect-http-content-type.h
|
…
|
|
detect-http-cookie.c
|
detect: Improve rule keyword alproto registration
|
6 years ago |
detect-http-cookie.h
|
…
|
|
detect-http-header-common.c
|
…
|
|
detect-http-header-common.h
|
…
|
|
detect-http-header-names.c
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-http-header-names.h
|
…
|
|
detect-http-header.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-http-header.h
|
…
|
|
detect-http-headers-stub.h
|
detect/http: Use v2 inspect and mpm engines
|
6 years ago |
detect-http-headers.c
|
detect: implement http {location,server} sticky buffer
|
6 years ago |
detect-http-headers.h
|
…
|
|
detect-http-host.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-http-host.h
|
detect/http.host: rename file for consistency
|
6 years ago |
detect-http-location.c
|
detect: implement http {location,server} sticky buffer
|
6 years ago |
detect-http-location.h
|
detect: implement http {location,server} sticky buffer
|
6 years ago |
detect-http-method.c
|
detect/http.method: minor cleanups
|
6 years ago |
detect-http-method.h
|
…
|
|
detect-http-protocol.c
|
detect-http-protocol: use v2 inspect/mpm engines
|
6 years ago |
detect-http-protocol.h
|
…
|
|
detect-http-raw-header.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-http-raw-header.h
|
…
|
|
detect-http-referer.c
|
detect/http: Use v2 inspect and mpm engines
|
6 years ago |
detect-http-referer.h
|
…
|
|
detect-http-request-line.c
|
detect/http: request/response line keyword modernization
|
6 years ago |
detect-http-request-line.h
|
…
|
|
detect-http-response-line.c
|
detect/http: request/response line keyword modernization
|
6 years ago |
detect-http-response-line.h
|
…
|
|
detect-http-server-body.c
|
detect: add http.response_body sticky buffer
|
7 years ago |
detect-http-server-body.h
|
…
|
|
detect-http-server.c
|
detect: implement http {location,server} sticky buffer
|
6 years ago |
detect-http-server.h
|
detect: implement http {location,server} sticky buffer
|
6 years ago |
detect-http-start.c
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-http-start.h
|
…
|
|
detect-http-stat-code.c
|
detect: Add missing keyword URLs and description
|
6 years ago |
detect-http-stat-code.h
|
…
|
|
detect-http-stat-msg.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-http-stat-msg.h
|
…
|
|
detect-http-ua.c
|
detect/http_user_agent: set alternative and info flags
|
7 years ago |
detect-http-ua.h
|
…
|
|
detect-http-uri.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-http-uri.h
|
…
|
|
detect-icmp-id.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-icmp-id.h
|
…
|
|
detect-icmp-seq.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-icmp-seq.h
|
…
|
|
detect-icode.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-icode.h
|
…
|
|
detect-id.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-id.h
|
…
|
|
detect-ipopts.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-ipopts.h
|
…
|
|
detect-ipproto.c
|
ipproto: fix memleak in error case
|
7 years ago |
detect-ipproto.h
|
…
|
|
detect-iprep.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-iprep.h
|
…
|
|
detect-ipv4hdr.c
|
detect/ipv4: add ipv4.hdr sticky buffer
|
6 years ago |
detect-ipv4hdr.h
|
detect/ipv4: add ipv4.hdr sticky buffer
|
6 years ago |
detect-ipv6hdr.c
|
detect: add ipv6.hdr sticky buffer
|
6 years ago |
detect-ipv6hdr.h
|
detect: add ipv6.hdr sticky buffer
|
6 years ago |
detect-isdataat.c
|
detect: Improve rule keyword alproto registration
|
6 years ago |
detect-isdataat.h
|
…
|
|
detect-itype.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-itype.h
|
…
|
|
detect-krb5-cname.c
|
build: cbindgen
|
6 years ago |
detect-krb5-cname.h
|
…
|
|
detect-krb5-errcode.c
|
build: cbindgen
|
6 years ago |
detect-krb5-errcode.h
|
…
|
|
detect-krb5-msgtype.c
|
build: cbindgen
|
6 years ago |
detect-krb5-msgtype.h
|
…
|
|
detect-krb5-sname.c
|
build: cbindgen
|
6 years ago |
detect-krb5-sname.h
|
…
|
|
detect-l3proto.c
|
…
|
|
detect-l3proto.h
|
…
|
|
detect-lua-extensions.c
|
…
|
|
detect-lua-extensions.h
|
…
|
|
detect-lua.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-lua.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
detect-mark.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-mark.h
|
…
|
|
detect-metadata.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-metadata.h
|
…
|
|
detect-modbus.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-modbus.h
|
…
|
|
detect-msg.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-msg.h
|
…
|
|
detect-nfs-procedure.c
|
build: cbindgen
|
6 years ago |
detect-nfs-procedure.h
|
…
|
|
detect-nfs-version.c
|
build: cbindgen
|
6 years ago |
detect-nfs-version.h
|
…
|
|
detect-noalert.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-noalert.h
|
…
|
|
detect-nocase.c
|
…
|
|
detect-nocase.h
|
…
|
|
detect-offset.c
|
detect/content: clean up logging output
|
6 years ago |
detect-offset.h
|
…
|
|
detect-parse.c
|
detect/parse: track negation during address parsing
|
6 years ago |
detect-parse.h
|
detect/parse: allow signature parsing to fail silently
|
6 years ago |
detect-pcre.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-pcre.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
detect-pkt-data.c
|
…
|
|
detect-pkt-data.h
|
…
|
|
detect-pktvar.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-pktvar.h
|
…
|
|
detect-prefilter.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-prefilter.h
|
…
|
|
detect-priority.c
|
detect/priority: change duplicate priority behavior
|
6 years ago |
detect-priority.h
|
…
|
|
detect-rawbytes.c
|
detect/rawbytes: improve error message plus do minor cleanups
|
7 years ago |
detect-rawbytes.h
|
…
|
|
detect-reference.c
|
detect/reference: implement strict parsing option
|
6 years ago |
detect-reference.h
|
detect/reference: code cleanups
|
6 years ago |
detect-replace.c
|
detect/replace: fix debug print issue
|
6 years ago |
detect-replace.h
|
detect/replace: implement post-match
|
6 years ago |
detect-rev.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-rev.h
|
…
|
|
detect-rpc.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-rpc.h
|
…
|
|
detect-sameip.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-sameip.h
|
…
|
|
detect-sid.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-sid.h
|
…
|
|
detect-sip-method.c
|
build: cbindgen
|
6 years ago |
detect-sip-method.h
|
detect/sip.method: add sticky buffer
|
6 years ago |
detect-sip-protocol.c
|
build: cbindgen
|
6 years ago |
detect-sip-protocol.h
|
detect/sip.protocol: add sticky buffer
|
6 years ago |
detect-sip-request-line.c
|
build: cbindgen
|
6 years ago |
detect-sip-request-line.h
|
detect/sip.request_line: add sticky buffer
|
6 years ago |
detect-sip-response-line.c
|
build: cbindgen
|
6 years ago |
detect-sip-response-line.h
|
detect/sip.response_line: add sticky buffer
|
6 years ago |
detect-sip-stat-code.c
|
build: cbindgen
|
6 years ago |
detect-sip-stat-code.h
|
detect/sip.stat_code: add sticky buffer
|
6 years ago |
detect-sip-stat-msg.c
|
build: cbindgen
|
6 years ago |
detect-sip-stat-msg.h
|
detect/sip.stat_msg: add sticky buffer
|
6 years ago |
detect-sip-uri.c
|
build: cbindgen
|
6 years ago |
detect-sip-uri.h
|
detect/sip.uri: add sticky buffer
|
6 years ago |
detect-smb-share.c
|
build: cbindgen
|
6 years ago |
detect-smb-share.h
|
…
|
|
detect-snmp-community.c
|
build: cbindgen
|
6 years ago |
detect-snmp-community.h
|
SNMP: add the "snmp.community" detection keyword
|
6 years ago |
detect-snmp-pdu_type.c
|
build: cbindgen
|
6 years ago |
detect-snmp-pdu_type.h
|
SNMP: add the "snmp.pdu_type" detection keyword
|
6 years ago |
detect-snmp-version.c
|
build: cbindgen
|
6 years ago |
detect-snmp-version.h
|
SNMP: add the "snmp.version" detection keyword
|
6 years ago |
detect-ssh-proto-version.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-ssh-proto-version.h
|
…
|
|
detect-ssh-proto.c
|
doc: update of ssh-kewords documentation
|
6 years ago |
detect-ssh-proto.h
|
…
|
|
detect-ssh-software-version.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-ssh-software-version.h
|
…
|
|
detect-ssh-software.c
|
doc: update of ssh-kewords documentation
|
6 years ago |
detect-ssh-software.h
|
…
|
|
detect-ssl-state.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-ssl-state.h
|
…
|
|
detect-ssl-version.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-ssl-version.h
|
…
|
|
detect-stream_size.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-stream_size.h
|
…
|
|
detect-tag.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-tag.h
|
…
|
|
detect-target.c
|
…
|
|
detect-target.h
|
…
|
|
detect-tcp-ack.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-tcp-ack.h
|
detect/tcp: rename tcp keyword files
|
6 years ago |
detect-tcp-flags.c
|
doc: add to sigmatch_table
|
6 years ago |
detect-tcp-flags.h
|
detect/tcp: rename tcp keyword files
|
6 years ago |
detect-tcp-seq.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-tcp-seq.h
|
detect/tcp: rename tcp keyword files
|
6 years ago |
detect-tcp-window.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-tcp-window.h
|
detect/tcp: rename tcp keyword files
|
6 years ago |
detect-tcphdr.c
|
detect/tcp/udp: minor cleanups
|
6 years ago |
detect-tcphdr.h
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-tcpmss.c
|
cleanup: eliminate warnings/errors with debug build on macos
|
6 years ago |
detect-tcpmss.h
|
detect: add tcp.mss keyword
|
6 years ago |
detect-template-buffer.c
|
detect: improve inspect buffer handling
|
7 years ago |
detect-template-buffer.h
|
…
|
|
detect-template-rust-buffer.c
|
build: cbindgen
|
6 years ago |
detect-template-rust-buffer.h
|
…
|
|
detect-template.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-template.h
|
…
|
|
detect-template2.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-template2.h
|
…
|
|
detect-threshold.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-threshold.h
|
…
|
|
detect-tls-cert-fingerprint.c
|
detect/tls: tls.cert_fingerprint is a sticky buffer
|
6 years ago |
detect-tls-cert-fingerprint.h
|
…
|
|
detect-tls-cert-issuer.c
|
detect-tls-cert-issuer: move unittests to tests/
|
6 years ago |
detect-tls-cert-issuer.h
|
…
|
|
detect-tls-cert-serial.c
|
detect-tls-cert-serial: move unittests to tests/
|
6 years ago |
detect-tls-cert-serial.h
|
…
|
|
detect-tls-cert-subject.c
|
detect-tls-cert-subject: move unittests to tests/
|
6 years ago |
detect-tls-cert-subject.h
|
…
|
|
detect-tls-cert-validity.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-tls-cert-validity.h
|
…
|
|
detect-tls-certs.c
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-tls-certs.h
|
detect: add tls.certs keyword
|
6 years ago |
detect-tls-ja3-hash.c
|
detect/ja3: print error for one rule only
|
6 years ago |
detect-tls-ja3-hash.h
|
…
|
|
detect-tls-ja3-string.c
|
detect/ja3: print error for one rule only
|
6 years ago |
detect-tls-ja3-string.h
|
…
|
|
detect-tls-ja3s-hash.c
|
detect/ja3: print error for one rule only
|
6 years ago |
detect-tls-ja3s-hash.h
|
detect: add (mpm) keyword ja3s.hash
|
6 years ago |
detect-tls-ja3s-string.c
|
detect/ja3: print error for one rule only
|
6 years ago |
detect-tls-ja3s-string.h
|
detect: add (mpm) keyword ja3s.string
|
6 years ago |
detect-tls-sni.c
|
detect-tls-sni: move unittests to tests/
|
6 years ago |
detect-tls-sni.h
|
…
|
|
detect-tls-version.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-tls-version.h
|
…
|
|
detect-tls.c
|
detect/tls: set alternatives for legacy tls keywords
|
6 years ago |
detect-tls.h
|
…
|
|
detect-tos.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-tos.h
|
…
|
|
detect-transform-compress-whitespace.c
|
transform: fixes comment about compress_whitespace
|
6 years ago |
detect-transform-compress-whitespace.h
|
…
|
|
detect-transform-dotprefix.c
|
detect/transform: add dotprefix keyword
|
6 years ago |
detect-transform-dotprefix.h
|
detect/transform: add dotprefix keyword
|
6 years ago |
detect-transform-md5.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-transform-md5.h
|
detect/transform: add to_md5 keyword
|
7 years ago |
detect-transform-sha1.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-transform-sha1.h
|
detect/transform: add to_sha1 keyword
|
7 years ago |
detect-transform-sha256.c
|
doc: fix some links in list-keywords command
|
7 years ago |
detect-transform-sha256.h
|
…
|
|
detect-transform-strip-whitespace.c
|
doc: fix some links in list-keywords command
|
7 years ago |
detect-transform-strip-whitespace.h
|
…
|
|
detect-ttl.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-ttl.h
|
…
|
|
detect-udphdr.c
|
detect/tcp/udp: minor cleanups
|
6 years ago |
detect-udphdr.h
|
detect: introduce pkt mpm engines
|
6 years ago |
detect-uricontent.c
|
detect: Make keyword description consistent
|
6 years ago |
detect-uricontent.h
|
uricontent: move debug func into unittests
|
7 years ago |
detect-urilen.c
|
…
|
|
detect-urilen.h
|
…
|
|
detect-within.c
|
detect/within: clean up option value parsing
|
7 years ago |
detect-within.h
|
…
|
|
detect-xbits.c
|
detect: remove Threadvars argument from API calls
|
6 years ago |
detect-xbits.h
|
…
|
|
detect.c
|
detect: fix inspection buffer for packet engines
|
6 years ago |
detect.h
|
detect/parse: allow signature parsing to fail silently
|
6 years ago |
device-storage.c
|
…
|
|
device-storage.h
|
…
|
|
flow-bit.c
|
…
|
|
flow-bit.h
|
…
|
|
flow-bypass.c
|
bypass: fix build on Windows
|
6 years ago |
flow-bypass.h
|
bypass: fix wait time at exit
|
6 years ago |
flow-hash.c
|
ips: fix wrong thread for bridge ips modes
|
6 years ago |
flow-hash.h
|
ebpf: get rid of hash in map value
|
6 years ago |
flow-manager.c
|
bypass: introduce CAPTURE_OFFLOAD
|
6 years ago |
flow-manager.h
|
…
|
|
flow-private.h
|
flow-bypass: increase bypass timeout
|
6 years ago |
flow-queue.c
|
…
|
|
flow-queue.h
|
…
|
|
flow-storage.c
|
…
|
|
flow-storage.h
|
…
|
|
flow-timeout.c
|
ips: fix wrong thread for bridge ips modes
|
6 years ago |
flow-timeout.h
|
…
|
|
flow-util.c
|
bypass: new callback stragegy
|
6 years ago |
flow-util.h
|
ips: fix wrong thread for bridge ips modes
|
6 years ago |
flow-var.c
|
…
|
|
flow-var.h
|
…
|
|
flow-worker.c
|
file extraction: always prune files after detect
|
6 years ago |
flow-worker.h
|
…
|
|
flow.c
|
bypass: introduce CAPTURE_OFFLOAD
|
6 years ago |
flow.h
|
ips: fix wrong thread for bridge ips modes
|
6 years ago |
host-bit.c
|
…
|
|
host-bit.h
|
…
|
|
host-queue.c
|
…
|
|
host-queue.h
|
…
|
|
host-storage.c
|
…
|
|
host-storage.h
|
…
|
|
host-timeout.c
|
…
|
|
host-timeout.h
|
…
|
|
host.c
|
…
|
|
host.h
|
…
|
|
ippair-bit.c
|
…
|
|
ippair-bit.h
|
…
|
|
ippair-queue.c
|
…
|
|
ippair-queue.h
|
…
|
|
ippair-storage.c
|
…
|
|
ippair-storage.h
|
…
|
|
ippair-timeout.c
|
…
|
|
ippair-timeout.h
|
…
|
|
ippair.c
|
…
|
|
ippair.h
|
…
|
|
log-cf-common.c
|
…
|
|
log-cf-common.h
|
…
|
|
log-droplog.c
|
drop.log: log deprecation warning if used
|
6 years ago |
log-droplog.h
|
…
|
|
log-filestore.c
|
filestore(v1): deprecation log warning when enabled
|
6 years ago |
log-filestore.h
|
…
|
|
log-httplog.c
|
…
|
|
log-httplog.h
|
…
|
|
log-pcap.c
|
log-pcap: remove stale comments
|
6 years ago |
log-pcap.h
|
…
|
|
log-stats.c
|
log/stats: fix formatting of long decoder events
|
7 years ago |
log-stats.h
|
…
|
|
log-tcp-data.c
|
…
|
|
log-tcp-data.h
|
…
|
|
log-tlslog.c
|
tls-log: restructure code for writing to buffer
|
6 years ago |
log-tlslog.h
|
…
|
|
log-tlsstore.c
|
…
|
|
log-tlsstore.h
|
…
|
|
output-file.c
|
file extraction: always prune files after detect
|
6 years ago |
output-file.h
|
…
|
|
output-filedata.c
|
file extraction: always prune files after detect
|
6 years ago |
output-filedata.h
|
…
|
|
output-filestore.c
|
filestore: remove jansson ifdefs
|
6 years ago |
output-filestore.h
|
…
|
|
output-flow.c
|
output: get rid of BUG_ONs
|
6 years ago |
output-flow.h
|
…
|
|
output-json-alert.c
|
eve/alert: clean up proto metadata
|
6 years ago |
output-json-alert.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-anomaly.c
|
log/anomaly: remove leading underscore from static var
|
6 years ago |
output-json-anomaly.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-common.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-dhcp.c
|
build: cbindgen
|
6 years ago |
output-json-dhcp.h
|
…
|
|
output-json-dnp3-objects.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-dnp3-objects.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-dnp3.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-dnp3.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-dns.c
|
build: cbindgen
|
6 years ago |
output-json-dns.h
|
dns: remove as much C DNS code as possible
|
6 years ago |
output-json-drop.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-drop.h
|
…
|
|
output-json-email-common.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-email-common.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-file.c
|
output/json: Refactor output buffer size macro
|
6 years ago |
output-json-file.h
|
eve/file: remove rust and jansson ifdefs.
|
6 years ago |
output-json-flow.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-flow.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-ftp.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-ftp.h
|
eve/ftp: Log FTP transactions
|
6 years ago |
output-json-http.c
|
yaml: clarify comment about dump-all-headers
|
6 years ago |
output-json-http.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-ikev2.c
|
build: cbindgen
|
6 years ago |
output-json-ikev2.h
|
…
|
|
output-json-krb5.c
|
build: cbindgen
|
6 years ago |
output-json-krb5.h
|
…
|
|
output-json-metadata.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-metadata.h
|
…
|
|
output-json-netflow.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-netflow.h
|
…
|
|
output-json-nfs.c
|
build: cbindgen
|
6 years ago |
output-json-nfs.h
|
rust: remove all HAVE_RUST guards
|
6 years ago |
output-json-rdp.c
|
build: cbindgen
|
6 years ago |
output-json-rdp.h
|
protocol parser: rdp
|
6 years ago |
output-json-sip.c
|
build: cbindgen
|
6 years ago |
output-json-sip.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-smb.c
|
build: cbindgen
|
6 years ago |
output-json-smb.h
|
eve/smb: minor cleanup now Rust is mandatory
|
6 years ago |
output-json-smtp.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-smtp.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-snmp.c
|
build: cbindgen
|
6 years ago |
output-json-snmp.h
|
SNMP: add logger
|
6 years ago |
output-json-ssh.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-ssh.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-stats.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-stats.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-template-rust.c
|
build: cbindgen
|
6 years ago |
output-json-template-rust.h
|
…
|
|
output-json-template.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-template.h
|
…
|
|
output-json-tftp.c
|
build: cbindgen
|
6 years ago |
output-json-tftp.h
|
…
|
|
output-json-tls.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json-tls.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-json.c
|
eve: support pcap_filename for unix socket mode
|
6 years ago |
output-json.h
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
output-lua.c
|
output-lua: register app-layer parser logger for SSH
|
6 years ago |
output-lua.h
|
…
|
|
output-packet.c
|
output: get rid of BUG_ONs
|
6 years ago |
output-packet.h
|
…
|
|
output-stats.c
|
output: get rid of BUG_ONs
|
6 years ago |
output-stats.h
|
…
|
|
output-streaming.c
|
output: get rid of BUG_ONs
|
6 years ago |
output-streaming.h
|
…
|
|
output-tx.c
|
output/tx: bail early if no flow
|
6 years ago |
output-tx.h
|
…
|
|
output.c
|
output: clarify registration
|
6 years ago |
output.h
|
…
|
|
packet-queue.c
|
…
|
|
packet-queue.h
|
…
|
|
pkt-var.c
|
…
|
|
pkt-var.h
|
…
|
|
queue.h
|
…
|
|
reputation.c
|
reputation: remove dead code
|
6 years ago |
reputation.h
|
reputation: remove dead code
|
6 years ago |
respond-reject-libnet11.c
|
…
|
|
respond-reject-libnet11.h
|
…
|
|
respond-reject.c
|
…
|
|
respond-reject.h
|
…
|
|
runmode-af-packet.c
|
afp: nicer error message in case of fanout failure
|
6 years ago |
runmode-af-packet.h
|
…
|
|
runmode-erf-dag.c
|
runmodes: simply default runmode logic
|
6 years ago |
runmode-erf-dag.h
|
…
|
|
runmode-erf-file.c
|
runmodes: simply default runmode logic
|
6 years ago |
runmode-erf-file.h
|
…
|
|
runmode-ipfw.c
|
runmodes: simply default runmode logic
|
6 years ago |
runmode-ipfw.h
|
…
|
|
runmode-napatech.c
|
runmodes: simply default runmode logic
|
6 years ago |
runmode-napatech.h
|
napatech: simplify integration with Napatech cards
|
6 years ago |
runmode-netmap.c
|
netmap: switch to nm_* API
|
6 years ago |
runmode-netmap.h
|
…
|
|
runmode-nflog.c
|
runmodes: simply default runmode logic
|
6 years ago |
runmode-nflog.h
|
…
|
|
runmode-nfq.c
|
runmodes: simply default runmode logic
|
6 years ago |
runmode-nfq.h
|
…
|
|
runmode-pcap-file.c
|
runmodes: simply default runmode logic
|
6 years ago |
runmode-pcap-file.h
|
…
|
|
runmode-pcap.c
|
runmodes: simply default runmode logic
|
6 years ago |
runmode-pcap.h
|
…
|
|
runmode-pfring.c
|
pfring: default to runmode workers
|
7 years ago |
runmode-pfring.h
|
…
|
|
runmode-unittests.c
|
decoder/vxlan: improvements and cleanups
|
6 years ago |
runmode-unittests.h
|
…
|
|
runmode-unix-socket.c
|
datasets: unix socket dataset-add command
|
6 years ago |
runmode-unix-socket.h
|
datasets: unix socket dataset-add command
|
6 years ago |
runmode-windivert.c
|
runmodes: simply default runmode logic
|
6 years ago |
runmode-windivert.h
|
…
|
|
runmodes.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
runmodes.h
|
runmodes: code cleanups
|
6 years ago |
rust-context.h
|
build: cbindgen
|
6 years ago |
rust.h
|
build: cbindgen
|
6 years ago |
source-af-packet.c
|
afp: nicer error message in case of fanout failure
|
6 years ago |
source-af-packet.h
|
afp: nicer error message in case of fanout failure
|
6 years ago |
source-erf-dag.c
|
…
|
|
source-erf-dag.h
|
…
|
|
source-erf-file.c
|
…
|
|
source-erf-file.h
|
…
|
|
source-ipfw.c
|
…
|
|
source-ipfw.h
|
…
|
|
source-napatech.c
|
napatech: simplify integration with Napatech cards
|
6 years ago |
source-napatech.h
|
napatech: simplify integration with Napatech cards
|
6 years ago |
source-netmap.c
|
netmap: suppress format truncation warning
|
6 years ago |
source-netmap.h
|
netmap: switch to nm_* API
|
6 years ago |
source-nflog.c
|
source-nflog: fix memleaks
|
6 years ago |
source-nflog.h
|
…
|
|
source-nfq-prototypes.h
|
…
|
|
source-nfq.c
|
nfq: clear memory of queue before using it
|
6 years ago |
source-nfq.h
|
Bug 2857: NFQ ASAN 'heap-use-after-free' error.
|
6 years ago |
source-pcap-file-directory-helper.c
|
pcap: suppress info messages
|
6 years ago |
source-pcap-file-directory-helper.h
|
…
|
|
source-pcap-file-helper.c
|
source-pcap-file: fix memory leak on pcap filter
|
6 years ago |
source-pcap-file-helper.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
source-pcap-file.c
|
source-pcap-file: honor bpf filter on command line
|
6 years ago |
source-pcap-file.h
|
…
|
|
source-pcap.c
|
pcap: fix breakloop error handling
|
6 years ago |
source-pcap.h
|
pcap: code reformatting and minor cleanups
|
6 years ago |
source-pfring.c
|
pfring: Fix kernel version in comment
|
6 years ago |
source-pfring.h
|
…
|
|
source-windivert-prototypes.h
|
…
|
|
source-windivert.c
|
…
|
|
source-windivert.h
|
…
|
|
stream-tcp-inline.c
|
…
|
|
stream-tcp-inline.h
|
…
|
|
stream-tcp-list.c
|
…
|
|
stream-tcp-list.h
|
…
|
|
stream-tcp-private.h
|
stream/tcp: support TCP fast open
|
6 years ago |
stream-tcp-reassemble.c
|
debug/validation: check tcp/app-layer data lengths
|
6 years ago |
stream-tcp-reassemble.h
|
…
|
|
stream-tcp-sack.c
|
…
|
|
stream-tcp-sack.h
|
…
|
|
stream-tcp-util.c
|
…
|
|
stream-tcp-util.h
|
…
|
|
stream-tcp.c
|
stream: reject broken ACK packets
|
6 years ago |
stream-tcp.h
|
stream: use flow/packet swap logic for SYN/ACK midstream
|
6 years ago |
stream.c
|
…
|
|
stream.h
|
…
|
|
suricata-common.h
|
build: cbindgen
|
6 years ago |
suricata.c
|
build: cbindgen
|
6 years ago |
suricata.h
|
version: automate and cleanup ver handling
|
6 years ago |
threads-debug.h
|
…
|
|
threads-profile.h
|
…
|
|
threads.c
|
…
|
|
threads.h
|
fix build on m68k with uclibc
|
6 years ago |
threadvars.h
|
…
|
|
tm-modules.c
|
tile: remove files
|
6 years ago |
tm-modules.h
|
…
|
|
tm-queuehandlers.c
|
nfq: remove unused queue handler type
|
6 years ago |
tm-queuehandlers.h
|
nfq: remove unused queue handler type
|
6 years ago |
tm-queues.c
|
…
|
|
tm-queues.h
|
…
|
|
tm-threads-common.h
|
tile: remove files
|
6 years ago |
tm-threads.c
|
stats: fix stats not always syncing in flow timeout
|
6 years ago |
tm-threads.h
|
threading: improve thread queues checking by dumping more info
|
6 years ago |
tmqh-flow.c
|
…
|
|
tmqh-flow.h
|
…
|
|
tmqh-packetpool.c
|
packetpool: move return stack to pool earlier
|
6 years ago |
tmqh-packetpool.h
|
…
|
|
tmqh-simple.c
|
…
|
|
tmqh-simple.h
|
…
|
|
tree.h
|
…
|
|
unix-manager.c
|
version: automate and cleanup ver handling
|
6 years ago |
unix-manager.h
|
jansson: remove explicit <jansson.h> includes
|
6 years ago |
util-action.c
|
…
|
|
util-action.h
|
…
|
|
util-affinity.c
|
posix: remove deprecated index/rindex calls
|
6 years ago |
util-affinity.h
|
…
|
|
util-atomic.c
|
…
|
|
util-atomic.h
|
tile: remove files
|
6 years ago |
util-base64.c
|
…
|
|
util-base64.h
|
…
|
|
util-bloomfilter-counting.c
|
…
|
|
util-bloomfilter-counting.h
|
…
|
|
util-bloomfilter.c
|
…
|
|
util-bloomfilter.h
|
…
|
|
util-bpf.c
|
util-bpf: workaround OpenBSD old libpcap
|
7 years ago |
util-bpf.h
|
util-bpf: workaround OpenBSD old libpcap
|
7 years ago |
util-buffer.c
|
…
|
|
util-buffer.h
|
…
|
|
util-byte.c
|
byte: suppress errors in byte extraction utils
|
6 years ago |
util-byte.h
|
byte: add bytes to string w/o allocation
|
6 years ago |
util-checksum.c
|
checksum: use u64 types
|
6 years ago |
util-checksum.h
|
checksum: use u64 types
|
6 years ago |
util-cidr.c
|
…
|
|
util-cidr.h
|
…
|
|
util-classification-config.c
|
classtype: handle missing classification.config
|
6 years ago |
util-classification-config.h
|
classtype: use global defines for size limits
|
6 years ago |
util-clock.h
|
…
|
|
util-conf.c
|
datasets: suppress noisy debug statement
|
6 years ago |
util-conf.h
|
suricata: Check if default log dir is writable
|
6 years ago |
util-coredump-config.c
|
main: enable coredumps after privileges are dropped
|
6 years ago |
util-coredump-config.h
|
main: enable coredumps after privileges are dropped
|
6 years ago |
util-cpu.c
|
warnings: fixes integer sizes in format strings
|
6 years ago |
util-cpu.h
|
…
|
|
util-crypt.c
|
hash/sha1: optimize by avoiding mem alloc
|
7 years ago |
util-crypt.h
|
hash/sha1: optimize by avoiding mem alloc
|
7 years ago |
util-daemon.c
|
…
|
|
util-daemon.h
|
…
|
|
util-debug-filters.c
|
…
|
|
util-debug-filters.h
|
…
|
|
util-debug.c
|
build: cbindgen
|
6 years ago |
util-debug.h
|
debug: add SCReturnBool function exit macro
|
6 years ago |
util-decode-asn1.c
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
util-decode-asn1.h
|
const: constify decoder, app-layer, detect funcs
|
6 years ago |
util-decode-der-get.c
|
…
|
|
util-decode-der-get.h
|
…
|
|
util-decode-der.c
|
der/asn1: reduce max depth limit to 32
|
6 years ago |
util-decode-der.h
|
…
|
|
util-decode-mime.c
|
smtp/mime: fix null ptr deref on bad traffic
|
7 years ago |
util-decode-mime.h
|
smtp/mime: fix null ptr deref on bad traffic
|
7 years ago |
util-detect.c
|
…
|
|
util-detect.h
|
…
|
|
util-device.c
|
suricata: fix computing of default packet size
|
6 years ago |
util-device.h
|
suricata: fix computing of default packet size
|
6 years ago |
util-ebpf.c
|
util-ebpf: fix creation of flow from pinned maps
|
6 years ago |
util-ebpf.h
|
util-ebpf: reindex
|
6 years ago |
util-enum.c
|
…
|
|
util-enum.h
|
…
|
|
util-error.c
|
logging/alert: Warn if metadata not selected
|
6 years ago |
util-error.h
|
logging/alert: Warn if metadata not selected
|
6 years ago |
util-file-decompression.c
|
lzma: make mandatory
|
6 years ago |
util-file-decompression.h
|
…
|
|
util-file-swf-decompression.c
|
lzma: replaces liblzma with own sdk for swf decompression
|
6 years ago |
util-file-swf-decompression.h
|
lzma: make mandatory
|
6 years ago |
util-file.c
|
files: add call for setting inspect sizes
|
6 years ago |
util-file.h
|
files: add call for setting inspect sizes
|
6 years ago |
util-fix_checksum.c
|
…
|
|
util-fix_checksum.h
|
…
|
|
util-fmemopen.c
|
…
|
|
util-fmemopen.h
|
…
|
|
util-hash-lookup3.c
|
…
|
|
util-hash-lookup3.h
|
…
|
|
util-hash-string.c
|
hash: move string hash funcs into util files
|
7 years ago |
util-hash-string.h
|
hash: move string hash funcs into util files
|
7 years ago |
util-hash.c
|
…
|
|
util-hash.h
|
…
|
|
util-hashlist.c
|
…
|
|
util-hashlist.h
|
…
|
|
util-host-info.c
|
…
|
|
util-host-info.h
|
…
|
|
util-host-os-info.c
|
posix: replace bzero with memset
|
6 years ago |
util-host-os-info.h
|
…
|
|
util-hyperscan.c
|
…
|
|
util-hyperscan.h
|
…
|
|
util-ioctl.c
|
offloading: on bsd, disable rxcsum and v6 variants
|
7 years ago |
util-ioctl.h
|
…
|
|
util-ip.c
|
parse/ip: fix potential oob write in ipv4 validation
|
6 years ago |
util-ip.h
|
…
|
|
util-ja3.c
|
detect/ja3: print error for one rule only
|
6 years ago |
util-ja3.h
|
…
|
|
util-log-redis.c
|
…
|
|
util-log-redis.h
|
…
|
|
util-logopenfile.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
util-logopenfile.h
|
…
|
|
util-lua-common.c
|
…
|
|
util-lua-common.h
|
…
|
|
util-lua-dnp3-objects.c
|
…
|
|
util-lua-dnp3-objects.h
|
…
|
|
util-lua-dnp3.c
|
…
|
|
util-lua-dnp3.h
|
…
|
|
util-lua-dns.c
|
build: cbindgen
|
6 years ago |
util-lua-dns.h
|
…
|
|
util-lua-http.c
|
…
|
|
util-lua-http.h
|
…
|
|
util-lua-ja3.c
|
lua: add Ja3SGetString function
|
6 years ago |
util-lua-ja3.h
|
…
|
|
util-lua-smtp.c
|
…
|
|
util-lua-smtp.h
|
…
|
|
util-lua-ssh.c
|
…
|
|
util-lua-ssh.h
|
…
|
|
util-lua-tls.c
|
…
|
|
util-lua-tls.h
|
…
|
|
util-lua.c
|
…
|
|
util-lua.h
|
…
|
|
util-luajit.c
|
detect: fix crash during startup with malformed yaml
|
7 years ago |
util-luajit.h
|
…
|
|
util-magic.c
|
magic/test: remove NULL as format string
|
6 years ago |
util-magic.h
|
…
|
|
util-mem.h
|
mem: Use correct len with strlcpy
|
6 years ago |
util-memcmp.c
|
…
|
|
util-memcmp.h
|
tile: remove files
|
6 years ago |
util-memcpy.h
|
…
|
|
util-memrchr.c
|
…
|
|
util-memrchr.h
|
…
|
|
util-misc.c
|
util: removes warning about double conversion
|
6 years ago |
util-misc.h
|
string: making shortening function global
|
6 years ago |
util-mpm-ac-bs.c
|
…
|
|
util-mpm-ac-bs.h
|
…
|
|
util-mpm-ac-ks-small.c
|
mpm/ac-ks: rename files from -tile to -ks
|
6 years ago |
util-mpm-ac-ks.c
|
mpm/ac-ks: rename files from -tile to -ks
|
6 years ago |
util-mpm-ac-ks.h
|
mpm/ac-ks: rename files from -tile to -ks
|
6 years ago |
util-mpm-ac.c
|
…
|
|
util-mpm-ac.h
|
…
|
|
util-mpm-hs.c
|
mpm/hs: track maxdepth
|
6 years ago |
util-mpm-hs.h
|
…
|
|
util-mpm.c
|
mpm: track maxdepth
|
6 years ago |
util-mpm.h
|
mpm: track maxdepth
|
6 years ago |
util-napatech.c
|
napatech: simplify integration with Napatech cards
|
6 years ago |
util-napatech.h
|
napatech: simplify integration with Napatech cards
|
6 years ago |
util-optimize.h
|
…
|
|
util-pages.c
|
…
|
|
util-pages.h
|
…
|
|
util-path.c
|
…
|
|
util-path.h
|
…
|
|
util-pidfile.c
|
coverity: suppress warnings
|
7 years ago |
util-pidfile.h
|
…
|
|
util-pool-thread.c
|
pool/thread: clean up tests
|
6 years ago |
util-pool-thread.h
|
pool/thread: remove old grow function
|
6 years ago |
util-pool.c
|
pool: don't call Cleanup after failed Init
|
6 years ago |
util-pool.h
|
pool: small code cleanups
|
7 years ago |
util-prefilter.c
|
…
|
|
util-prefilter.h
|
…
|
|
util-print.c
|
…
|
|
util-print.h
|
…
|
|
util-privs.c
|
init: pledge(2) needs "fattr" during suricata reload.
|
6 years ago |
util-privs.h
|
init: use pledge(2) after suricata initialization.
|
6 years ago |
util-profiling-keywords.c
|
…
|
|
util-profiling-locks.c
|
…
|
|
util-profiling-locks.h
|
…
|
|
util-profiling-prefilter.c
|
…
|
|
util-profiling-rulegroups.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
util-profiling-rules.c
|
jansson: remove HAVE_LIBJANSSON guards
|
6 years ago |
util-profiling.c
|
rust/sip: add SIP logger
|
6 years ago |
util-profiling.h
|
…
|
|
util-proto-name.c
|
…
|
|
util-proto-name.h
|
…
|
|
util-radix-tree.c
|
posix: replace bzero with memset
|
6 years ago |
util-radix-tree.h
|
…
|
|
util-random.c
|
coverity: don't warn on fall back random
|
7 years ago |
util-random.h
|
…
|
|
util-reference-config.c
|
detect/reference: allow undefined references
|
6 years ago |
util-reference-config.h
|
reference: change scope of add func to global
|
6 years ago |
util-rohash.c
|
…
|
|
util-rohash.h
|
…
|
|
util-rule-vars.c
|
…
|
|
util-rule-vars.h
|
…
|
|
util-runmodes.c
|
nfqueue: more descriptive queue names (e.g. 'NFQ#1' instead of '1')
|
6 years ago |
util-runmodes.h
|
runmodes: remove unused prototypes
|
6 years ago |
util-running-modes.c
|
list-keywords: don't load yaml
|
6 years ago |
util-running-modes.h
|
…
|
|
util-signal.c
|
…
|
|
util-signal.h
|
…
|
|
util-spm-bm.c
|
boyermoore: avoid one tolower call
|
6 years ago |
util-spm-bm.h
|
boyermoore: optimization with one alloc less
|
6 years ago |
util-spm-bs.c
|
…
|
|
util-spm-bs.h
|
…
|
|
util-spm-bs2bm.c
|
…
|
|
util-spm-bs2bm.h
|
…
|
|
util-spm-hs.c
|
…
|
|
util-spm-hs.h
|
…
|
|
util-spm.c
|
…
|
|
util-spm.h
|
…
|
|
util-storage.c
|
storage: don't leak memory for unittests
|
7 years ago |
util-storage.h
|
…
|
|
util-streaming-buffer.c
|
streaming/api: fix overlap check
|
6 years ago |
util-streaming-buffer.h
|
…
|
|
util-strlcatu.c
|
…
|
|
util-strlcpyu.c
|
…
|
|
util-strptime.c
|
…
|
|
util-syslog.c
|
…
|
|
util-syslog.h
|
…
|
|
util-thash.c
|
thash: fix prealloc config setting
|
6 years ago |
util-thash.h
|
thash: generalize hash table as used in flow
|
6 years ago |
util-threshold-config.c
|
detect/parse: track negation during address parsing
|
6 years ago |
util-threshold-config.h
|
…
|
|
util-time.c
|
mingw: fix compile error
|
6 years ago |
util-time.h
|
stats: more accurate interval handling
|
7 years ago |
util-unittest-helper.c
|
unittests: add signature parse test helper
|
7 years ago |
util-unittest-helper.h
|
unittests: add signature parse test helper
|
7 years ago |
util-unittest.c
|
…
|
|
util-unittest.h
|
…
|
|
util-validate.h
|
detect: suppress scan-build warnings
|
7 years ago |
util-var-name.c
|
signature: avoids overflow from VariableNameHash
|
6 years ago |
util-var-name.h
|
…
|
|
util-var.c
|
…
|
|
util-var.h
|
…
|
|
util-vector.h
|
…
|
|
win32-misc.c
|
…
|
|
win32-misc.h
|
posix: replace bzero with memset
|
6 years ago |
win32-service.c
|
…
|
|
win32-service.h
|
…
|
|
win32-syscall.c
|
windows/syscall: fix unused function warning
|
6 years ago |
win32-syscall.h
|
windows/syscall: convert file to use unix newlines
|
6 years ago |
win32-syslog.h
|
…
|
|