.. |
Makefile.am
|
decode: add ERSPANv1 decoder
|
10 years ago |
action-globals.h
|
…
|
|
alert-debuglog.c
|
stream: remove FLOW_NO_APPLAYER_INSPECTION flag
|
10 years ago |
alert-debuglog.h
|
…
|
|
alert-fastlog.c
|
fast log: clean up tests
|
10 years ago |
alert-fastlog.h
|
…
|
|
alert-prelude.c
|
…
|
|
alert-prelude.h
|
…
|
|
alert-syslog.c
|
…
|
|
alert-syslog.h
|
…
|
|
alert-unified2-alert.c
|
…
|
|
alert-unified2-alert.h
|
…
|
|
app-layer-dcerpc-common.h
|
…
|
|
app-layer-dcerpc-udp.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-dcerpc-udp.h
|
…
|
|
app-layer-dcerpc.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-dcerpc.h
|
…
|
|
app-layer-detect-proto.c
|
afl - Don't fail if app-layer proto enabled value is NULL.
|
10 years ago |
app-layer-detect-proto.h
|
…
|
|
app-layer-dns-common.c
|
counters: make DNS counters globals
|
10 years ago |
app-layer-dns-common.h
|
counters: make DNS counters globals
|
10 years ago |
app-layer-dns-tcp.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-dns-tcp.h
|
…
|
|
app-layer-dns-udp.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-dns-udp.h
|
…
|
|
app-layer-events.c
|
…
|
|
app-layer-events.h
|
…
|
|
app-layer-ftp.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-ftp.h
|
…
|
|
app-layer-htp-body.c
|
http: body pruning update
|
10 years ago |
app-layer-htp-body.h
|
http: body pruning update
|
10 years ago |
app-layer-htp-file.c
|
…
|
|
app-layer-htp-file.h
|
…
|
|
app-layer-htp-libhtp.c
|
…
|
|
app-layer-htp-libhtp.h
|
…
|
|
app-layer-htp-mem.c
|
http: make http.memuse a global counter
|
10 years ago |
app-layer-htp-mem.h
|
http: make http.memuse a global counter
|
10 years ago |
app-layer-htp-xff.c
|
…
|
|
app-layer-htp-xff.h
|
…
|
|
app-layer-htp.c
|
htp: fix test
|
10 years ago |
app-layer-htp.h
|
app-layer-htp: add http_body_inline setting
|
10 years ago |
app-layer-modbus.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-modbus.h
|
…
|
|
app-layer-nbss.h
|
…
|
|
app-layer-parser.c
|
app-layer: improve EOF handling
|
10 years ago |
app-layer-parser.h
|
app-layer: de_state optimization
|
10 years ago |
app-layer-protos.c
|
alproto: improve AppProtoToString
|
10 years ago |
app-layer-protos.h
|
alproto: improve AppProtoToString
|
10 years ago |
app-layer-smb.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-smb.h
|
…
|
|
app-layer-smb2.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-smb2.h
|
…
|
|
app-layer-smtp.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-smtp.h
|
filedata: read inspected tracker settings from suricata.yaml
|
10 years ago |
app-layer-ssh.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-ssh.h
|
…
|
|
app-layer-ssl.c
|
app-layer: update all protocols to accept NULL+EOF
|
10 years ago |
app-layer-ssl.h
|
…
|
|
app-layer-tls-handshake.c
|
…
|
|
app-layer-tls-handshake.h
|
…
|
|
app-layer.c
|
counters: work around unix-socket init issues
|
10 years ago |
app-layer.h
|
counters: work around unix-socket init issues
|
10 years ago |
conf-yaml-loader.c
|
conf - process includes even if not at root node.
|
10 years ago |
conf-yaml-loader.h
|
…
|
|
conf.c
|
--set - handle spaces on either side of '='
|
10 years ago |
conf.h
|
--set - handle spaces on either side of '='
|
10 years ago |
counters.c
|
counters: reduce global usage
|
10 years ago |
counters.h
|
counters: use ptr to name instead of copy
|
10 years ago |
data-queue.c
|
…
|
|
data-queue.h
|
…
|
|
debug.h
|
…
|
|
decode-erspan.c
|
decode: add erspan counter
|
10 years ago |
decode-erspan.h
|
decode: add ERSPANv1 decoder
|
10 years ago |
decode-ethernet.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-ethernet.h
|
decode: add ERSPANv1 decoder
|
10 years ago |
decode-events.c
|
…
|
|
decode-events.h
|
decode: add ERSPANv1 decoder
|
10 years ago |
decode-gre.c
|
decode: add ERSPANv1 decoder
|
10 years ago |
decode-gre.h
|
…
|
|
decode-icmpv4.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-icmpv4.h
|
…
|
|
decode-icmpv6.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-icmpv6.h
|
…
|
|
decode-ipv4.c
|
decode: clean up tunnel decode logic
|
10 years ago |
decode-ipv4.h
|
…
|
|
decode-ipv6.c
|
decode: clean up tunnel decode logic
|
10 years ago |
decode-ipv6.h
|
…
|
|
decode-mpls.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-mpls.h
|
…
|
|
decode-null.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-null.h
|
pcap: implement LINKTYPE_NULL
|
10 years ago |
decode-ppp.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-ppp.h
|
…
|
|
decode-pppoe.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-pppoe.h
|
…
|
|
decode-raw.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-raw.h
|
…
|
|
decode-sctp.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-sctp.h
|
…
|
|
decode-sll.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-sll.h
|
…
|
|
decode-tcp.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-tcp.h
|
…
|
|
decode-teredo.c
|
decode: clean up tunnel decode logic
|
10 years ago |
decode-teredo.h
|
…
|
|
decode-udp.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-udp.h
|
…
|
|
decode-vlan.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
decode-vlan.h
|
…
|
|
decode.c
|
ips: move counters in common struct and funcs
|
10 years ago |
decode.h
|
ips: move counters in common struct and funcs
|
10 years ago |
defrag-config.c
|
…
|
|
defrag-config.h
|
…
|
|
defrag-hash.c
|
…
|
|
defrag-hash.h
|
…
|
|
defrag-queue.c
|
…
|
|
defrag-queue.h
|
…
|
|
defrag-timeout.c
|
…
|
|
defrag-timeout.h
|
…
|
|
defrag.c
|
counters: s/SCPerfCounterIncr/StatsIncr/g
|
10 years ago |
defrag.h
|
…
|
|
detect-ack.c
|
…
|
|
detect-ack.h
|
…
|
|
detect-app-layer-event.c
|
…
|
|
detect-app-layer-event.h
|
…
|
|
detect-app-layer-protocol.c
|
…
|
|
detect-app-layer-protocol.h
|
…
|
|
detect-asn1.c
|
parsing: s/strtok/strtok_r/g
|
10 years ago |
detect-asn1.h
|
…
|
|
detect-byte-extract.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-byte-extract.h
|
…
|
|
detect-bytejump.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-bytejump.h
|
…
|
|
detect-bytetest.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-bytetest.h
|
…
|
|
detect-classtype.c
|
classification: remove global from parsing
|
10 years ago |
detect-classtype.h
|
…
|
|
detect-content.c
|
Bug 1281 - Add tests for rule content of lengths > 255.
|
10 years ago |
detect-content.h
|
Bug 1281 - Accept rule content with lengths greater than 255.
|
10 years ago |
detect-csum.c
|
…
|
|
detect-csum.h
|
…
|
|
detect-dce-iface.c
|
…
|
|
detect-dce-iface.h
|
…
|
|
detect-dce-opnum.c
|
dce_opnum: improve memory handling on parsing error
|
10 years ago |
detect-dce-opnum.h
|
…
|
|
detect-dce-stub-data.c
|
…
|
|
detect-dce-stub-data.h
|
…
|
|
detect-depth.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-depth.h
|
…
|
|
detect-detection-filter.c
|
parsing: s/strtok/strtok_r/g
|
10 years ago |
detect-detection-filter.h
|
…
|
|
detect-distance.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-distance.h
|
…
|
|
detect-dns-query.c
|
…
|
|
detect-dns-query.h
|
…
|
|
detect-dsize.c
|
…
|
|
detect-dsize.h
|
…
|
|
detect-engine-address-ipv4.c
|
…
|
|
detect-engine-address-ipv4.h
|
…
|
|
detect-engine-address-ipv6.c
|
…
|
|
detect-engine-address-ipv6.h
|
…
|
|
detect-engine-address.c
|
…
|
|
detect-engine-address.h
|
…
|
|
detect-engine-alert.c
|
…
|
|
detect-engine-alert.h
|
…
|
|
detect-engine-analyzer.c
|
engine-analysis: print fast_pattern summary
|
10 years ago |
detect-engine-analyzer.h
|
…
|
|
detect-engine-apt-event.c
|
…
|
|
detect-engine-apt-event.h
|
…
|
|
detect-engine-content-inspection.c
|
…
|
|
detect-engine-content-inspection.h
|
Detect engine for smtp file_data file_data: inspecting smtp attachments
|
10 years ago |
detect-engine-dcepayload.c
|
…
|
|
detect-engine-dcepayload.h
|
…
|
|
detect-engine-dns.c
|
…
|
|
detect-engine-dns.h
|
…
|
|
detect-engine-event.c
|
…
|
|
detect-engine-event.h
|
decode: add ERSPANv1 decoder
|
10 years ago |
detect-engine-file.c
|
…
|
|
detect-engine-file.h
|
…
|
|
detect-engine-filedata-smtp.c
|
smtp file_data: fix wrong free
|
10 years ago |
detect-engine-filedata-smtp.h
|
UT: implement tests for inspection code
|
10 years ago |
detect-engine-hcbd.c
|
http-client-body: create unittest util func
|
10 years ago |
detect-engine-hcbd.h
|
…
|
|
detect-engine-hcd.c
|
…
|
|
detect-engine-hcd.h
|
…
|
|
detect-engine-hhd.c
|
detect-http-header: improve buffer handling
|
10 years ago |
detect-engine-hhd.h
|
…
|
|
detect-engine-hhhd.c
|
…
|
|
detect-engine-hhhd.h
|
…
|
|
detect-engine-hmd.c
|
…
|
|
detect-engine-hmd.h
|
…
|
|
detect-engine-hrhd.c
|
…
|
|
detect-engine-hrhd.h
|
…
|
|
detect-engine-hrhhd.c
|
…
|
|
detect-engine-hrhhd.h
|
…
|
|
detect-engine-hrl.c
|
…
|
|
detect-engine-hrl.h
|
…
|
|
detect-engine-hrud.c
|
…
|
|
detect-engine-hrud.h
|
…
|
|
detect-engine-hsbd.c
|
detect hsbd: simplify resize logic
|
10 years ago |
detect-engine-hsbd.h
|
…
|
|
detect-engine-hscd.c
|
…
|
|
detect-engine-hscd.h
|
…
|
|
detect-engine-hsmd.c
|
…
|
|
detect-engine-hsmd.h
|
…
|
|
detect-engine-hua.c
|
…
|
|
detect-engine-hua.h
|
…
|
|
detect-engine-iponly.c
|
Fix harmless typo in IPOnlyCIDRItemNew's SCReturnPtr use
|
10 years ago |
detect-engine-iponly.h
|
…
|
|
detect-engine-modbus.c
|
modbus: fix heap-buffer-overflow in Modbus parser
|
10 years ago |
detect-engine-modbus.h
|
…
|
|
detect-engine-mpm.c
|
mpm: implement prefiltering for smtp
|
10 years ago |
detect-engine-mpm.h
|
mpm: implement prefiltering for smtp
|
10 years ago |
detect-engine-payload.c
|
…
|
|
detect-engine-payload.h
|
…
|
|
detect-engine-port.c
|
…
|
|
detect-engine-port.h
|
…
|
|
detect-engine-proto.c
|
…
|
|
detect-engine-proto.h
|
…
|
|
detect-engine-siggroup.c
|
…
|
|
detect-engine-siggroup.h
|
…
|
|
detect-engine-sigorder.c
|
…
|
|
detect-engine-sigorder.h
|
…
|
|
detect-engine-state.c
|
detect-state: remove/hide BUG_ON statements
|
10 years ago |
detect-engine-state.h
|
detect-state: handle duplicate inspect/match
|
10 years ago |
detect-engine-tag.c
|
…
|
|
detect-engine-tag.h
|
…
|
|
detect-engine-threshold.c
|
suppress: add track by_either mode
|
10 years ago |
detect-engine-threshold.h
|
…
|
|
detect-engine-uri.c
|
…
|
|
detect-engine-uri.h
|
…
|
|
detect-engine.c
|
http: memcap HTTP server inspect body code
|
10 years ago |
detect-engine.h
|
detect: remove unused match_flags from inspect engines
|
10 years ago |
detect-fast-pattern.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-fast-pattern.h
|
…
|
|
detect-file-data.c
|
file_data: register keyword for smtp and tcp protocol
|
10 years ago |
detect-file-data.h
|
…
|
|
detect-fileext.c
|
…
|
|
detect-fileext.h
|
…
|
|
detect-filemagic.c
|
…
|
|
detect-filemagic.h
|
…
|
|
detect-filemd5.c
|
…
|
|
detect-filemd5.h
|
…
|
|
detect-filename.c
|
…
|
|
detect-filename.h
|
…
|
|
detect-filesize.c
|
…
|
|
detect-filesize.h
|
…
|
|
detect-filestore.c
|
…
|
|
detect-filestore.h
|
…
|
|
detect-flags.c
|
…
|
|
detect-flags.h
|
…
|
|
detect-flow.c
|
…
|
|
detect-flow.h
|
…
|
|
detect-flowbits.c
|
flowbits: strip leading and trailing spaces in name
|
10 years ago |
detect-flowbits.h
|
…
|
|
detect-flowint.c
|
…
|
|
detect-flowint.h
|
…
|
|
detect-flowvar.c
|
…
|
|
detect-flowvar.h
|
…
|
|
detect-fragbits.c
|
…
|
|
detect-fragbits.h
|
…
|
|
detect-fragoffset.c
|
…
|
|
detect-fragoffset.h
|
…
|
|
detect-ftpbounce.c
|
…
|
|
detect-ftpbounce.h
|
…
|
|
detect-geoip.c
|
…
|
|
detect-geoip.h
|
…
|
|
detect-gid.c
|
…
|
|
detect-gid.h
|
…
|
|
detect-hostbits.c
|
hostbits: ignore leading and trailing white space
|
10 years ago |
detect-hostbits.h
|
…
|
|
detect-http-client-body.c
|
…
|
|
detect-http-client-body.h
|
…
|
|
detect-http-cookie.c
|
…
|
|
detect-http-cookie.h
|
…
|
|
detect-http-header.c
|
…
|
|
detect-http-header.h
|
…
|
|
detect-http-hh.c
|
…
|
|
detect-http-hh.h
|
…
|
|
detect-http-hrh.c
|
…
|
|
detect-http-hrh.h
|
…
|
|
detect-http-method.c
|
…
|
|
detect-http-method.h
|
…
|
|
detect-http-raw-header.c
|
…
|
|
detect-http-raw-header.h
|
…
|
|
detect-http-raw-uri.c
|
…
|
|
detect-http-raw-uri.h
|
…
|
|
detect-http-server-body.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-http-server-body.h
|
…
|
|
detect-http-stat-code.c
|
…
|
|
detect-http-stat-code.h
|
…
|
|
detect-http-stat-msg.c
|
…
|
|
detect-http-stat-msg.h
|
…
|
|
detect-http-ua.c
|
…
|
|
detect-http-ua.h
|
…
|
|
detect-http-uri.c
|
…
|
|
detect-http-uri.h
|
…
|
|
detect-icmp-id.c
|
…
|
|
detect-icmp-id.h
|
…
|
|
detect-icmp-seq.c
|
…
|
|
detect-icmp-seq.h
|
…
|
|
detect-icode.c
|
…
|
|
detect-icode.h
|
…
|
|
detect-id.c
|
…
|
|
detect-id.h
|
…
|
|
detect-ipopts.c
|
…
|
|
detect-ipopts.h
|
…
|
|
detect-ipproto.c
|
…
|
|
detect-ipproto.h
|
…
|
|
detect-iprep.c
|
…
|
|
detect-iprep.h
|
…
|
|
detect-isdataat.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-isdataat.h
|
…
|
|
detect-itype.c
|
…
|
|
detect-itype.h
|
…
|
|
detect-l3proto.c
|
…
|
|
detect-l3proto.h
|
…
|
|
detect-lua-extensions.c
|
…
|
|
detect-lua-extensions.h
|
…
|
|
detect-lua.c
|
lua: fix error handling
|
10 years ago |
detect-lua.h
|
…
|
|
detect-mark.c
|
…
|
|
detect-mark.h
|
…
|
|
detect-metadata.c
|
…
|
|
detect-metadata.h
|
…
|
|
detect-modbus.c
|
…
|
|
detect-modbus.h
|
…
|
|
detect-msg.c
|
classification: remove global from parsing
|
10 years ago |
detect-msg.h
|
…
|
|
detect-noalert.c
|
…
|
|
detect-noalert.h
|
…
|
|
detect-nocase.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-nocase.h
|
…
|
|
detect-offset.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-offset.h
|
…
|
|
detect-parse.c
|
detect: remove unused match_flags from inspect engines
|
10 years ago |
detect-parse.h
|
…
|
|
detect-pcre.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-pcre.h
|
…
|
|
detect-pkt-data.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-pkt-data.h
|
…
|
|
detect-pktvar.c
|
…
|
|
detect-pktvar.h
|
…
|
|
detect-priority.c
|
…
|
|
detect-priority.h
|
…
|
|
detect-rawbytes.c
|
…
|
|
detect-rawbytes.h
|
…
|
|
detect-reference.c
|
reference: remove global
|
10 years ago |
detect-reference.h
|
…
|
|
detect-replace.c
|
Formatting cleanup in detect-replace.c
|
10 years ago |
detect-replace.h
|
…
|
|
detect-rev.c
|
…
|
|
detect-rev.h
|
…
|
|
detect-rpc.c
|
…
|
|
detect-rpc.h
|
…
|
|
detect-sameip.c
|
…
|
|
detect-sameip.h
|
…
|
|
detect-seq.c
|
…
|
|
detect-seq.h
|
…
|
|
detect-sid.c
|
…
|
|
detect-sid.h
|
…
|
|
detect-ssh-proto-version.c
|
…
|
|
detect-ssh-proto-version.h
|
…
|
|
detect-ssh-software-version.c
|
…
|
|
detect-ssh-software-version.h
|
…
|
|
detect-ssl-state.c
|
…
|
|
detect-ssl-state.h
|
…
|
|
detect-ssl-version.c
|
…
|
|
detect-ssl-version.h
|
…
|
|
detect-stream_size.c
|
…
|
|
detect-stream_size.h
|
…
|
|
detect-tag.c
|
…
|
|
detect-tag.h
|
…
|
|
detect-threshold.c
|
suppress: support ip-lists
|
10 years ago |
detect-threshold.h
|
suppress: add track by_either mode
|
10 years ago |
detect-tls-version.c
|
…
|
|
detect-tls-version.h
|
…
|
|
detect-tls.c
|
…
|
|
detect-tls.h
|
…
|
|
detect-tos.c
|
…
|
|
detect-tos.h
|
…
|
|
detect-ttl.c
|
…
|
|
detect-ttl.h
|
…
|
|
detect-uricontent.c
|
…
|
|
detect-uricontent.h
|
…
|
|
detect-urilen.c
|
…
|
|
detect-urilen.h
|
…
|
|
detect-window.c
|
…
|
|
detect-window.h
|
…
|
|
detect-within.c
|
find and replace HSBDMATCH by FILEDATA
|
10 years ago |
detect-within.h
|
…
|
|
detect-xbits.c
|
…
|
|
detect-xbits.h
|
…
|
|
detect.c
|
counters: remaining s/SCPerf/Stats/g
|
10 years ago |
detect.h
|
detect: various header cleanups
|
10 years ago |
flow-bit.c
|
…
|
|
flow-bit.h
|
…
|
|
flow-hash.c
|
…
|
|
flow-hash.h
|
…
|
|
flow-manager.c
|
flow timeout: prevent dead locks
|
10 years ago |
flow-manager.h
|
…
|
|
flow-private.h
|
…
|
|
flow-queue.c
|
…
|
|
flow-queue.h
|
…
|
|
flow-storage.c
|
…
|
|
flow-storage.h
|
…
|
|
flow-timeout.c
|
flow timeout: prevent dead locks
|
10 years ago |
flow-timeout.h
|
…
|
|
flow-util.c
|
…
|
|
flow-util.h
|
…
|
|
flow-var.c
|
…
|
|
flow-var.h
|
…
|
|
flow.c
|
…
|
|
flow.h
|
stream: remove FLOW_NO_APPLAYER_INSPECTION flag
|
10 years ago |
host-bit.c
|
…
|
|
host-bit.h
|
…
|
|
host-queue.c
|
…
|
|
host-queue.h
|
…
|
|
host-storage.c
|
…
|
|
host-storage.h
|
…
|
|
host-timeout.c
|
…
|
|
host-timeout.h
|
…
|
|
host.c
|
…
|
|
host.h
|
…
|
|
ippair-bit.c
|
…
|
|
ippair-bit.h
|
…
|
|
ippair-queue.c
|
…
|
|
ippair-queue.h
|
…
|
|
ippair-storage.c
|
…
|
|
ippair-storage.h
|
…
|
|
ippair-timeout.c
|
…
|
|
ippair-timeout.h
|
…
|
|
ippair.c
|
…
|
|
ippair.h
|
…
|
|
log-dnslog.c
|
Added support for full parsing of the rcode header in DNS answer
|
10 years ago |
log-dnslog.h
|
…
|
|
log-droplog.c
|
classification: remove global from parsing
|
10 years ago |
log-droplog.h
|
…
|
|
log-file.c
|
…
|
|
log-file.h
|
…
|
|
log-filestore.c
|
file extract: add app_proto to logging
|
10 years ago |
log-filestore.h
|
…
|
|
log-httplog.c
|
…
|
|
log-httplog.h
|
…
|
|
log-pcap.c
|
…
|
|
log-pcap.h
|
…
|
|
log-stats.c
|
log-stats: make global/threads logging configurable
|
10 years ago |
log-stats.h
|
…
|
|
log-tcp-data.c
|
…
|
|
log-tcp-data.h
|
…
|
|
log-tlslog.c
|
…
|
|
log-tlslog.h
|
…
|
|
output-file.c
|
…
|
|
output-file.h
|
…
|
|
output-filedata.c
|
…
|
|
output-filedata.h
|
…
|
|
output-flow.c
|
…
|
|
output-flow.h
|
…
|
|
output-json-alert.c
|
output-json: fix type of data parameter
|
10 years ago |
output-json-alert.h
|
…
|
|
output-json-dns.c
|
Added support for full parsing of the rcode header in DNS answer
|
10 years ago |
output-json-dns.h
|
…
|
|
output-json-drop.c
|
…
|
|
output-json-drop.h
|
…
|
|
output-json-email-common.c
|
email-json: free temporary 'cc' string
|
10 years ago |
output-json-email-common.h
|
…
|
|
output-json-file.c
|
file extract: add app_proto to logging
|
10 years ago |
output-json-file.h
|
…
|
|
output-json-flow.c
|
output-json: fix type of data parameter
|
10 years ago |
output-json-flow.h
|
…
|
|
output-json-http.c
|
output-json: fix type of data parameter
|
10 years ago |
output-json-http.h
|
…
|
|
output-json-netflow.c
|
output-json: fix type of data parameter
|
10 years ago |
output-json-netflow.h
|
…
|
|
output-json-smtp.c
|
output-json: fix type of data parameter
|
10 years ago |
output-json-smtp.h
|
…
|
|
output-json-ssh.c
|
output-json: fix type of data parameter
|
10 years ago |
output-json-ssh.h
|
…
|
|
output-json-stats.c
|
json-stats: log deltas
|
10 years ago |
output-json-stats.h
|
eve-log: add JSON stats logging
|
10 years ago |
output-json-tls.c
|
output-json: fix type of data parameter
|
10 years ago |
output-json-tls.h
|
…
|
|
output-json.c
|
Add Feature #1454. Generic eve-log prefix support.
|
10 years ago |
output-json.h
|
log file: add type flag
|
10 years ago |
output-lua.c
|
output-lua: sync variable name with yaml
|
10 years ago |
output-lua.h
|
…
|
|
output-packet.c
|
…
|
|
output-packet.h
|
…
|
|
output-stats.c
|
…
|
|
output-stats.h
|
counters: pass per thread stats to output api
|
10 years ago |
output-streaming.c
|
…
|
|
output-streaming.h
|
…
|
|
output-tx.c
|
…
|
|
output-tx.h
|
…
|
|
output.c
|
…
|
|
output.h
|
…
|
|
packet-queue.c
|
…
|
|
packet-queue.h
|
…
|
|
pkt-var.c
|
…
|
|
pkt-var.h
|
…
|
|
ptxdump.py
|
…
|
|
queue.h
|
…
|
|
reputation.c
|
fix reputation parser so that it accepts ipv6 addresses in configuration file.
|
10 years ago |
reputation.h
|
…
|
|
respond-reject-libnet11.c
|
…
|
|
respond-reject-libnet11.h
|
…
|
|
respond-reject.c
|
…
|
|
respond-reject.h
|
…
|
|
runmode-af-packet.c
|
…
|
|
runmode-af-packet.h
|
…
|
|
runmode-erf-dag.c
|
…
|
|
runmode-erf-dag.h
|
…
|
|
runmode-erf-file.c
|
…
|
|
runmode-erf-file.h
|
…
|
|
runmode-ipfw.c
|
…
|
|
runmode-ipfw.h
|
…
|
|
runmode-napatech.c
|
…
|
|
runmode-napatech.h
|
…
|
|
runmode-netmap.c
|
…
|
|
runmode-netmap.h
|
…
|
|
runmode-nflog.c
|
…
|
|
runmode-nflog.h
|
…
|
|
runmode-nfq.c
|
…
|
|
runmode-nfq.h
|
…
|
|
runmode-pcap-file.c
|
…
|
|
runmode-pcap-file.h
|
…
|
|
runmode-pcap.c
|
…
|
|
runmode-pcap.h
|
…
|
|
runmode-pfring.c
|
…
|
|
runmode-pfring.h
|
…
|
|
runmode-tile.c
|
…
|
|
runmode-tile.h
|
…
|
|
runmode-unittests.c
|
counters: remaining s/SCPerf/Stats/g
|
10 years ago |
runmode-unittests.h
|
…
|
|
runmode-unix-socket.c
|
counters: work around unix-socket init issues
|
10 years ago |
runmode-unix-socket.h
|
…
|
|
runmodes.c
|
logging: fix modules ordering during logging
|
10 years ago |
runmodes.h
|
…
|
|
source-af-packet.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-af-packet.h
|
…
|
|
source-erf-dag.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-erf-dag.h
|
…
|
|
source-erf-file.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-erf-file.h
|
…
|
|
source-ipfw.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-ipfw.h
|
…
|
|
source-mpipe.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-mpipe.h
|
…
|
|
source-napatech.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-napatech.h
|
…
|
|
source-netmap.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-netmap.h
|
…
|
|
source-nflog.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-nflog.h
|
…
|
|
source-nfq-prototypes.h
|
…
|
|
source-nfq.c
|
ips: move counters in common struct and funcs
|
10 years ago |
source-nfq.h
|
…
|
|
source-pcap-file.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-pcap-file.h
|
…
|
|
source-pcap.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-pcap.h
|
…
|
|
source-pfring.c
|
decode: create util function for basic counter updates
|
10 years ago |
source-pfring.h
|
…
|
|
stream-tcp-inline.c
|
…
|
|
stream-tcp-inline.h
|
…
|
|
stream-tcp-private.h
|
stream: remove STREAMTCP_STREAM_FLAG_CLOSE_INITIATED logic
|
10 years ago |
stream-tcp-reassemble.c
|
stream: update StreamMsg to don't have fixed size
|
10 years ago |
stream-tcp-reassemble.h
|
http: make http.memuse a global counter
|
10 years ago |
stream-tcp-sack.c
|
…
|
|
stream-tcp-sack.h
|
…
|
|
stream-tcp-util.c
|
…
|
|
stream-tcp-util.h
|
…
|
|
stream-tcp.c
|
stream: remove STREAMTCP_STREAM_FLAG_CLOSE_INITIATED logic
|
10 years ago |
stream-tcp.h
|
counters: make tcp.memuse a global counter
|
10 years ago |
stream.c
|
stream: update StreamMsg to don't have fixed size
|
10 years ago |
stream.h
|
stream: update StreamMsg to don't have fixed size
|
10 years ago |
suricata-common.h
|
mpm: implement prefiltering for smtp
|
10 years ago |
suricata.c
|
--set - handle spaces on either side of '='
|
10 years ago |
suricata.h
|
…
|
|
threads-arch-tile.h
|
threads: add untimed control cond call
|
10 years ago |
threads-debug.h
|
threads: add untimed control cond call
|
10 years ago |
threads-profile.h
|
threads: add untimed control cond call
|
10 years ago |
threads.c
|
…
|
|
threads.h
|
threads: add untimed control cond call
|
10 years ago |
threadvars.h
|
counters: s/SCPerfPrivateContext/StatsPrivateThreadContext/g
|
10 years ago |
tm-modules.c
|
eve-log: add JSON stats logging
|
10 years ago |
tm-modules.h
|
logging: fix modules ordering during logging
|
10 years ago |
tm-queuehandlers.c
|
…
|
|
tm-queuehandlers.h
|
…
|
|
tm-queues.c
|
…
|
|
tm-queues.h
|
…
|
|
tm-threads-common.h
|
eve-log: add JSON stats logging
|
10 years ago |
tm-threads.c
|
counters: make threads cleanup all memory
|
10 years ago |
tm-threads.h
|
threading: remove unused cmd thread create func
|
10 years ago |
tmqh-flow.c
|
counters: remaining s/SCPerf/Stats/g
|
10 years ago |
tmqh-flow.h
|
…
|
|
tmqh-nfq.c
|
…
|
|
tmqh-nfq.h
|
…
|
|
tmqh-packetpool.c
|
flow timeout: prevent dead locks
|
10 years ago |
tmqh-packetpool.h
|
flow timeout: prevent dead locks
|
10 years ago |
tmqh-ringbuffer.c
|
counters: remaining s/SCPerf/Stats/g
|
10 years ago |
tmqh-ringbuffer.h
|
…
|
|
tmqh-simple.c
|
counters: remaining s/SCPerf/Stats/g
|
10 years ago |
tmqh-simple.h
|
…
|
|
unix-manager.c
|
counters: remaining s/SCPerf/Stats/g
|
10 years ago |
unix-manager.h
|
unix-manager: convert to thread module
|
10 years ago |
util-action.c
|
…
|
|
util-action.h
|
…
|
|
util-affinity.c
|
…
|
|
util-affinity.h
|
…
|
|
util-atomic.c
|
…
|
|
util-atomic.h
|
…
|
|
util-base64.c
|
…
|
|
util-base64.h
|
…
|
|
util-binsearch.c
|
…
|
|
util-binsearch.h
|
…
|
|
util-bloomfilter-counting.c
|
…
|
|
util-bloomfilter-counting.h
|
…
|
|
util-bloomfilter.c
|
…
|
|
util-bloomfilter.h
|
…
|
|
util-buffer.c
|
…
|
|
util-buffer.h
|
Fix bug #1435 (data loss when dumping payloads to JSON)
|
10 years ago |
util-byte.c
|
…
|
|
util-byte.h
|
…
|
|
util-checksum.c
|
…
|
|
util-checksum.h
|
…
|
|
util-cidr.c
|
…
|
|
util-cidr.h
|
…
|
|
util-classification-config.c
|
classification: update pcre globals use
|
10 years ago |
util-classification-config.h
|
classification: update pcre globals use
|
10 years ago |
util-clock.h
|
…
|
|
util-conf.c
|
…
|
|
util-conf.h
|
…
|
|
util-coredump-config.c
|
…
|
|
util-coredump-config.h
|
…
|
|
util-cpu.c
|
…
|
|
util-cpu.h
|
…
|
|
util-crypt.c
|
…
|
|
util-crypt.h
|
…
|
|
util-cuda-buffer.c
|
…
|
|
util-cuda-buffer.h
|
…
|
|
util-cuda-handlers.c
|
…
|
|
util-cuda-handlers.h
|
…
|
|
util-cuda-vars.c
|
…
|
|
util-cuda-vars.h
|
…
|
|
util-cuda.c
|
…
|
|
util-cuda.h
|
…
|
|
util-daemon.c
|
…
|
|
util-daemon.h
|
…
|
|
util-debug-filters.c
|
…
|
|
util-debug-filters.h
|
…
|
|
util-debug.c
|
…
|
|
util-debug.h
|
…
|
|
util-decode-asn1.c
|
…
|
|
util-decode-asn1.h
|
…
|
|
util-decode-der-get.c
|
decode-der: decode DC keyword
|
10 years ago |
util-decode-der-get.h
|
…
|
|
util-decode-der.c
|
Fix possible wrap in uint32_t addition in DER parser
|
10 years ago |
util-decode-der.h
|
…
|
|
util-decode-mime.c
|
smtp: fix mime boundary parsing issue
|
10 years ago |
util-decode-mime.h
|
smtp: fix mime boundary parsing issue
|
10 years ago |
util-device.c
|
util-device: fix LiveBuildDeviceListCustom
|
10 years ago |
util-device.h
|
…
|
|
util-enum.c
|
…
|
|
util-enum.h
|
…
|
|
util-error.c
|
counters: remove references to 'perf' counters
|
10 years ago |
util-error.h
|
counters: remove references to 'perf' counters
|
10 years ago |
util-file.c
|
filedata: implement inspected tracker
|
10 years ago |
util-file.h
|
filedata: implement inspected tracker
|
10 years ago |
util-fix_checksum.c
|
…
|
|
util-fix_checksum.h
|
…
|
|
util-fmemopen.c
|
…
|
|
util-fmemopen.h
|
…
|
|
util-hash-lookup3.c
|
…
|
|
util-hash-lookup3.h
|
…
|
|
util-hash.c
|
…
|
|
util-hash.h
|
…
|
|
util-hashlist.c
|
…
|
|
util-hashlist.h
|
…
|
|
util-host-info.c
|
…
|
|
util-host-info.h
|
…
|
|
util-host-os-info.c
|
afl - SCHINfoLoadFromConfig - check for NULL before parsing.
|
10 years ago |
util-host-os-info.h
|
…
|
|
util-ioctl.c
|
…
|
|
util-ioctl.h
|
…
|
|
util-ip.c
|
…
|
|
util-ip.h
|
…
|
|
util-logopenfile-tile.c
|
…
|
|
util-logopenfile-tile.h
|
…
|
|
util-logopenfile.c
|
…
|
|
util-logopenfile.h
|
logfile: rename ALERT_ types to LOGFILE_TYPE_
|
10 years ago |
util-lua-common.c
|
…
|
|
util-lua-common.h
|
…
|
|
util-lua-dns.c
|
…
|
|
util-lua-dns.h
|
…
|
|
util-lua-http.c
|
…
|
|
util-lua-http.h
|
…
|
|
util-lua.c
|
…
|
|
util-lua.h
|
…
|
|
util-magic.c
|
…
|
|
util-magic.h
|
…
|
|
util-mem.h
|
…
|
|
util-memcmp.c
|
…
|
|
util-memcmp.h
|
…
|
|
util-memcpy.h
|
…
|
|
util-memrchr.c
|
…
|
|
util-memrchr.h
|
…
|
|
util-misc.c
|
…
|
|
util-misc.h
|
…
|
|
util-mpm-ac-bs.c
|
…
|
|
util-mpm-ac-bs.h
|
…
|
|
util-mpm-ac-cuda-kernel.cu
|
…
|
|
util-mpm-ac-gfbs.c
|
…
|
|
util-mpm-ac-gfbs.h
|
…
|
|
util-mpm-ac-tile-small.c
|
…
|
|
util-mpm-ac-tile.c
|
…
|
|
util-mpm-ac-tile.h
|
…
|
|
util-mpm-ac.c
|
…
|
|
util-mpm-ac.h
|
…
|
|
util-mpm-b2g.c
|
…
|
|
util-mpm-b2g.h
|
…
|
|
util-mpm-b3g.c
|
…
|
|
util-mpm-b3g.h
|
…
|
|
util-mpm-wumanber.c
|
…
|
|
util-mpm-wumanber.h
|
…
|
|
util-mpm.c
|
…
|
|
util-mpm.h
|
…
|
|
util-optimize.h
|
…
|
|
util-path.c
|
…
|
|
util-path.h
|
…
|
|
util-pidfile.c
|
…
|
|
util-pidfile.h
|
…
|
|
util-pool-thread.c
|
…
|
|
util-pool-thread.h
|
…
|
|
util-pool.c
|
…
|
|
util-pool.h
|
…
|
|
util-print.c
|
print: make PrintRawDataFp take a const arg
|
10 years ago |
util-print.h
|
print: make PrintRawDataFp take a const arg
|
10 years ago |
util-privs.c
|
…
|
|
util-privs.h
|
…
|
|
util-profiling-keywords.c
|
…
|
|
util-profiling-locks.c
|
…
|
|
util-profiling-locks.h
|
…
|
|
util-profiling-rules.c
|
profiling: fix sorting on very long runs
|
10 years ago |
util-profiling.c
|
…
|
|
util-profiling.h
|
…
|
|
util-proto-name.c
|
parsing: s/strtok/strtok_r/g
|
10 years ago |
util-proto-name.h
|
…
|
|
util-radix-tree.c
|
radix-tree - prevent out of bounds array access
|
10 years ago |
util-radix-tree.h
|
…
|
|
util-random.c
|
…
|
|
util-random.h
|
…
|
|
util-reference-config.c
|
reference: update pcre globals use
|
10 years ago |
util-reference-config.h
|
reference: update pcre globals use
|
10 years ago |
util-ringbuffer.c
|
…
|
|
util-ringbuffer.h
|
…
|
|
util-rohash.c
|
…
|
|
util-rohash.h
|
…
|
|
util-rule-vars.c
|
…
|
|
util-rule-vars.h
|
…
|
|
util-runmodes.c
|
…
|
|
util-runmodes.h
|
…
|
|
util-running-modes.c
|
…
|
|
util-running-modes.h
|
…
|
|
util-signal.c
|
…
|
|
util-signal.h
|
…
|
|
util-spm-bm.c
|
…
|
|
util-spm-bm.h
|
…
|
|
util-spm-bs.c
|
…
|
|
util-spm-bs.h
|
…
|
|
util-spm-bs2bm.c
|
…
|
|
util-spm-bs2bm.h
|
…
|
|
util-spm.c
|
…
|
|
util-spm.h
|
…
|
|
util-storage.c
|
…
|
|
util-storage.h
|
…
|
|
util-strlcatu.c
|
…
|
|
util-strlcpyu.c
|
…
|
|
util-syslog.c
|
…
|
|
util-syslog.h
|
…
|
|
util-threshold-config.c
|
suppress: add track by_either mode
|
10 years ago |
util-threshold-config.h
|
…
|
|
util-time.c
|
Add timezone to timestamp in JSON logs
|
10 years ago |
util-time.h
|
…
|
|
util-unittest-helper.c
|
…
|
|
util-unittest-helper.h
|
…
|
|
util-unittest.c
|
…
|
|
util-unittest.h
|
…
|
|
util-validate.h
|
…
|
|
util-var-name.c
|
…
|
|
util-var-name.h
|
…
|
|
util-var.c
|
…
|
|
util-var.h
|
…
|
|
util-vector.h
|
…
|
|
win32-misc.c
|
…
|
|
win32-misc.h
|
…
|
|
win32-service.c
|
…
|
|
win32-service.h
|
…
|
|
win32-syslog.h
|
…
|
|