.. |
tests
|
tests/detect-engine-hsbd: deinit det_ctx threads
|
7 years ago |
Makefile.am
|
Adds WinDivert support to Windows builds
|
7 years ago |
action-globals.h
|
…
|
|
alert-debuglog.c
|
output: introduce init return type
|
8 years ago |
alert-debuglog.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
alert-fastlog.c
|
output: introduce init return type
|
8 years ago |
alert-fastlog.h
|
output: introduce init return type
|
8 years ago |
alert-prelude.c
|
prelude: swap msg and class_msg in Prelude alert
|
7 years ago |
alert-prelude.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
alert-syslog.c
|
output: introduce init return type
|
8 years ago |
alert-syslog.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
alert-unified2-alert.c
|
xff: Use XFF configuration in eve and filestore
|
7 years ago |
alert-unified2-alert.h
|
unified2: fix xff extra-data output (Bug #2305)
|
7 years ago |
app-layer-dcerpc-common.h
|
dcerpc: improve stub buffer handling
|
8 years ago |
app-layer-dcerpc-udp.c
|
app-layer: remove unused HasTxDetectState call
|
8 years ago |
app-layer-dcerpc-udp.h
|
dcerpc/udp: add missing tx support
|
8 years ago |
app-layer-dcerpc.c
|
gcc8: fix format truncation warnings
|
7 years ago |
app-layer-dcerpc.h
|
smb/dcerpc: use tx api
|
9 years ago |
app-layer-detect-proto.c
|
rust/dhcp: Rust based DHCP decoder and logger.
|
7 years ago |
app-layer-detect-proto.h
|
app-layer-expectation: expectation system
|
8 years ago |
app-layer-dhcp.c
|
rust/dhcp: Rust based DHCP decoder and logger.
|
7 years ago |
app-layer-dhcp.h
|
rust/dhcp: Rust based DHCP decoder and logger.
|
7 years ago |
app-layer-dnp3-objects.c
|
dnp3: regenerate object decoding code
|
8 years ago |
app-layer-dnp3-objects.h
|
DNP3: Application layer decoder.
|
9 years ago |
app-layer-dnp3.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-dnp3.h
|
DNP3: Application layer decoder.
|
9 years ago |
app-layer-dns-common.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-dns-common.h
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-dns-tcp-rust.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-dns-tcp-rust.h
|
rust: DNS app-layer.
|
8 years ago |
app-layer-dns-tcp.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-dns-tcp.h
|
…
|
|
app-layer-dns-udp-rust.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-dns-udp-rust.h
|
rust: DNS app-layer.
|
8 years ago |
app-layer-dns-udp.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-dns-udp.h
|
…
|
|
app-layer-enip-common.c
|
compiler: more strict compiler warnings
|
8 years ago |
app-layer-enip-common.h
|
enip/cip: improve output & style
|
9 years ago |
app-layer-enip.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-enip.h
|
Adding SCADA EtherNet/IP and CIP protocol support
|
9 years ago |
app-layer-events.c
|
app-layer: protocol change API
|
8 years ago |
app-layer-events.h
|
app-layer: protocol change API
|
8 years ago |
app-layer-expectation.c
|
app-layer-expectation: expectation system
|
8 years ago |
app-layer-expectation.h
|
app-layer-expectation: expectation system
|
8 years ago |
app-layer-ftp.c
|
app-layer-ftp: fill direction of transfer
|
7 years ago |
app-layer-ftp.h
|
app-layer-ftp: add memcap for ftp
|
8 years ago |
app-layer-htp-body.c
|
compiler: more strict compiler warnings
|
8 years ago |
app-layer-htp-body.h
|
http: add per direction config for body parsing
|
9 years ago |
app-layer-htp-file.c
|
htp: remove usused file flags
|
8 years ago |
app-layer-htp-file.h
|
…
|
|
app-layer-htp-libhtp.c
|
compiler: more strict compiler warnings
|
8 years ago |
app-layer-htp-libhtp.h
|
compiler: more strict compiler warnings
|
8 years ago |
app-layer-htp-mem.c
|
htp: destroy atomic vars
|
8 years ago |
app-layer-htp-mem.h
|
htp: destroy atomic vars
|
8 years ago |
app-layer-htp-xff.c
|
xff: HttpXFFGetCfg - allow conf to be NULL
|
7 years ago |
app-layer-htp-xff.h
|
xff: Use XFF configuration in eve and filestore
|
7 years ago |
app-layer-htp.c
|
htp: cleanup and fix test
|
7 years ago |
app-layer-htp.h
|
app-layer: remove unused HasTxDetectState call
|
8 years ago |
app-layer-ikev2.c
|
Remove the 'experimental' mark for IKEv2
|
7 years ago |
app-layer-ikev2.h
|
Add new parser: IKEv2
|
7 years ago |
app-layer-krb5.c
|
Add Kerberos 5 application layer
|
7 years ago |
app-layer-krb5.h
|
Add Kerberos 5 application layer
|
7 years ago |
app-layer-modbus.c
|
modbus: Support Unit Identifier
|
7 years ago |
app-layer-modbus.h
|
modbus: Support Unit Identifier
|
7 years ago |
app-layer-nbss.h
|
…
|
|
app-layer-nfs-tcp.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-nfs-tcp.h
|
rust/nfs: implement events
|
8 years ago |
app-layer-nfs-udp.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-nfs-udp.h
|
nfs: rename nfs3 to nfs
|
8 years ago |
app-layer-ntp.c
|
rust: remove multi level 'experimental'
|
7 years ago |
app-layer-ntp.h
|
Add NTP parser (rust-experimental)
|
8 years ago |
app-layer-parser.c
|
rust/dhcp: Rust based DHCP decoder and logger.
|
7 years ago |
app-layer-parser.h
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-protos.c
|
rust/dhcp: Rust based DHCP decoder and logger.
|
7 years ago |
app-layer-protos.h
|
rust/dhcp: Rust based DHCP decoder and logger.
|
7 years ago |
app-layer-register.c
|
app-layer-register: add GetTxIterator
|
7 years ago |
app-layer-register.h
|
app-layer-register: add GetTxIterator
|
7 years ago |
app-layer-smb-tcp-rust.c
|
rust/smb: implement minimal record parsing in probing
|
7 years ago |
app-layer-smb-tcp-rust.h
|
rust/smb: initial support
|
7 years ago |
app-layer-smb.c
|
rust/smb: initial support
|
7 years ago |
app-layer-smb.h
|
rust/smb: initial support
|
7 years ago |
app-layer-smb2.c
|
compiler: more strict compiler warnings
|
8 years ago |
app-layer-smb2.h
|
…
|
|
app-layer-smtp.c
|
app-layer: remove unused HasTxDetectState call
|
8 years ago |
app-layer-smtp.h
|
smtp: implement DetectFlags API
|
8 years ago |
app-layer-ssh.c
|
app-layer: remove unused HasTxDetectState call
|
8 years ago |
app-layer-ssh.h
|
ssh: implement DetectFlags API
|
8 years ago |
app-layer-ssl.c
|
tls: new config for dealing with encrypted traffic
|
7 years ago |
app-layer-ssl.h
|
app-layer-ssl: use BIT_U32 for flags
|
7 years ago |
app-layer-template.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-template.h
|
app-layer templates: cleanups
|
9 years ago |
app-layer-tftp.c
|
app-layer: remove has events callback - not used
|
8 years ago |
app-layer-tftp.h
|
rust/tftp: add tftp parsing and logging
|
8 years ago |
app-layer.c
|
htp: allow HTTP pickup of response data
|
8 years ago |
app-layer.h
|
compiler: more strict compiler warnings
|
8 years ago |
conf-yaml-loader.c
|
yaml-loader: fix memory leak on fail include
|
7 years ago |
conf-yaml-loader.h
|
…
|
|
conf.c
|
mingw: minor compile warning fixes
|
7 years ago |
conf.h
|
conf: new function: ConfNodeHasChildren
|
8 years ago |
counters.c
|
signal: use centralized pthread_sigmask for signals
|
8 years ago |
counters.h
|
compiler: more strict compiler warnings
|
8 years ago |
debug.h
|
…
|
|
decode-afl.c
|
cleanup: remove all uint use
|
8 years ago |
decode-erspan.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-erspan.h
|
…
|
|
decode-ethernet.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-ethernet.h
|
decoder: implement IEEE802.1AH
|
8 years ago |
decode-events.c
|
stream: set event for suspected data injection during 3whs
|
8 years ago |
decode-events.h
|
stream: set event for suspected data injection during 3whs
|
8 years ago |
decode-gre.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-gre.h
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-icmpv4.c
|
flow: track flow for ICMP
|
7 years ago |
decode-icmpv4.h
|
flow: track flow for ICMP
|
7 years ago |
decode-icmpv6.c
|
flow: track flow for ICMP
|
7 years ago |
decode-icmpv6.h
|
flow: track flow for ICMP
|
7 years ago |
decode-ipv4.c
|
flow: track flow for ip proto 41
|
7 years ago |
decode-ipv4.h
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-ipv6.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-ipv6.h
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-mpls.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-mpls.h
|
…
|
|
decode-null.c
|
…
|
|
decode-null.h
|
…
|
|
decode-ppp.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-ppp.h
|
…
|
|
decode-pppoe.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-pppoe.h
|
…
|
|
decode-raw.c
|
…
|
|
decode-raw.h
|
…
|
|
decode-sctp.c
|
flow: move flow handling into worker threads
|
9 years ago |
decode-sctp.h
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-sll.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-sll.h
|
…
|
|
decode-tcp.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-tcp.h
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-template.c
|
…
|
|
decode-template.h
|
…
|
|
decode-teredo.c
|
decode: add config option to disable teredo
|
8 years ago |
decode-teredo.h
|
decode: add config option to disable teredo
|
8 years ago |
decode-udp.c
|
tcp/udp: rename checksum functions for better meaning
|
8 years ago |
decode-udp.h
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-vlan.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode-vlan.h
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
decode.c
|
cuda: remove
|
8 years ago |
decode.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
defrag-config.c
|
…
|
|
defrag-config.h
|
…
|
|
defrag-hash.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
defrag-hash.h
|
defrag: get/set memcap value
|
8 years ago |
defrag-queue.c
|
…
|
|
defrag-queue.h
|
compiler: more strict compiler warnings
|
8 years ago |
defrag-timeout.c
|
compiler: more strict compiler warnings
|
8 years ago |
defrag-timeout.h
|
…
|
|
defrag.c
|
compiler: more strict compiler warnings
|
8 years ago |
defrag.h
|
defrag - take protocol into account during re-assembly
|
9 years ago |
detect-ack.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-ack.h
|
…
|
|
detect-app-layer-event.c
|
mingw: minor compile warning fixes
|
7 years ago |
detect-app-layer-event.h
|
detect: set events in inspection phase
|
8 years ago |
detect-app-layer-protocol.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-app-layer-protocol.h
|
…
|
|
detect-asn1.c
|
detect-asn1: fix memory leak in error path
|
8 years ago |
detect-asn1.h
|
…
|
|
detect-base64-data.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-base64-data.h
|
detect: constify Signature/SigMatch use at runtime
|
9 years ago |
detect-base64-decode.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-base64-decode.h
|
detect: pass SigMatchData to inspect functions
|
9 years ago |
detect-bsize.c
|
detect: bsize keyword
|
8 years ago |
detect-bsize.h
|
detect: bsize keyword
|
8 years ago |
detect-bypass.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-bypass.h
|
detect: add bypass keyword
|
9 years ago |
detect-byte-extract.c
|
detect: register dynamic buffers into de_ctx
|
8 years ago |
detect-byte-extract.h
|
detect: pass SigMatchData to inspect functions
|
9 years ago |
detect-bytejump.c
|
content inspection: support transforms
|
8 years ago |
detect-bytejump.h
|
detect: make setup/free/match funcs static where possible
|
9 years ago |
detect-bytetest.c
|
content inspection: support transforms
|
8 years ago |
detect-bytetest.h
|
detect: make setup/free/match funcs static where possible
|
9 years ago |
detect-cipservice.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-cipservice.h
|
detect: make setup/free/match funcs static where possible
|
9 years ago |
detect-classtype.c
|
rule-parser: detect duplicate classtype keyword
|
8 years ago |
detect-classtype.h
|
…
|
|
detect-content.c
|
detect: register dynamic buffers into de_ctx
|
8 years ago |
detect-content.h
|
detect/content: introduce startswith modifier
|
8 years ago |
detect-csum.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
detect-csum.h
|
…
|
|
detect-dce-iface.c
|
rust/smb: initial support
|
7 years ago |
detect-dce-iface.h
|
dcerpc: simplify common detect code
|
9 years ago |
detect-dce-opnum.c
|
rust/smb: initial support
|
7 years ago |
detect-dce-opnum.h
|
detect: make setup/free/match funcs static where possible
|
9 years ago |
detect-dce-stub-data.c
|
rust/smb: initial support
|
7 years ago |
detect-dce-stub-data.h
|
detect: make setup/free/match funcs static where possible
|
9 years ago |
detect-depth.c
|
detect/content: introduce startswith modifier
|
8 years ago |
detect-depth.h
|
…
|
|
detect-detection-filter.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-detection-filter.h
|
detect: make setup/free/match funcs static where possible
|
9 years ago |
detect-distance.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-distance.h
|
…
|
|
detect-dnp3.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-dnp3.h
|
compiler: more strict compiler warnings
|
8 years ago |
detect-dns-query.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-dns-query.h
|
dns_query: mpm prefilter engine
|
9 years ago |
detect-dsize.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-dsize.h
|
detect: reject dsize rules that can't match
|
8 years ago |
detect-engine-address-ipv4.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
detect-engine-address-ipv4.h
|
…
|
|
detect-engine-address-ipv6.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
detect-engine-address-ipv6.h
|
compiler: more strict compiler warnings
|
8 years ago |
detect-engine-address.c
|
mingw: minor compile warning fixes
|
7 years ago |
detect-engine-address.h
|
rules: optimize bidir rules with same src/dst
|
7 years ago |
detect-engine-alert.c
|
detect: fix mix of pass and noalert
|
8 years ago |
detect-engine-alert.h
|
detect: constify Signature/SigMatch use at runtime
|
9 years ago |
detect-engine-analyzer.c
|
rule analyzer: simple rules to json dumper
|
8 years ago |
detect-engine-analyzer.h
|
rule analyzer: simple rules to json dumper
|
8 years ago |
detect-engine-build.c
|
rule analyzer: simple rules to json dumper
|
8 years ago |
detect-engine-build.h
|
detect: rewrite of the detect engine
|
8 years ago |
detect-engine-content-inspection.c
|
detect: bsize keyword
|
8 years ago |
detect-engine-content-inspection.h
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-dcepayload.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-engine-dcepayload.h
|
detect: remove DMATCH list
|
9 years ago |
detect-engine-dns.c
|
detect/dns_query: move to API v2. Supports transforms.
|
8 years ago |
detect-engine-dns.h
|
detect/dns_query: move to API v2. Supports transforms.
|
8 years ago |
detect-engine-enip.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-engine-enip.h
|
detect: pass SigMatchData to inspect functions
|
9 years ago |
detect-engine-event.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-engine-event.h
|
…
|
|
detect-engine-file.c
|
detect/file: cleanups
|
8 years ago |
detect-engine-file.h
|
detect/file: cleanups
|
8 years ago |
detect-engine-filedata.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-filedata.h
|
file_data: update to API v2
|
8 years ago |
detect-engine-hcbd.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hcbd.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-hcd.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hcd.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-hhhd.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hhhd.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-hmd.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hmd.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-hrhd.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hrhd.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-hrhhd.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hrhhd.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-hrud.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hrud.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-hsbd.c
|
file_data/http: inspect cleanup
|
7 years ago |
detect-engine-hsbd.h
|
file_data: update to API v2
|
8 years ago |
detect-engine-hscd.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hscd.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-hsmd.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hsmd.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-hua.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-hua.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-iponly.c
|
detect: rewrite of the detect engine
|
8 years ago |
detect-engine-iponly.h
|
detect: rewrite of the detect engine
|
8 years ago |
detect-engine-loader.c
|
detect: move buffer type map into detect ctx
|
8 years ago |
detect-engine-loader.h
|
compiler: more strict compiler warnings
|
8 years ago |
detect-engine-modbus.c
|
modbus: Support Unit Identifier
|
7 years ago |
detect-engine-modbus.h
|
detect: pass SigMatchData to inspect functions
|
9 years ago |
detect-engine-mpm.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-mpm.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-payload.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-payload.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-port.c
|
rules: optimize bidir rules with same src/dst
|
7 years ago |
detect-engine-port.h
|
rules: optimize bidir rules with same src/dst
|
7 years ago |
detect-engine-prefilter-common.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-prefilter-common.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine-prefilter.c
|
detect/prefilter: move hash into detect engine ctx
|
8 years ago |
detect-engine-prefilter.h
|
detect/prefilter: move hash into detect engine ctx
|
8 years ago |
detect-engine-profile.c
|
output/json: update callers to use explicit directions
|
7 years ago |
detect-engine-profile.h
|
detect: rewrite of the detect engine
|
8 years ago |
detect-engine-proto.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-engine-proto.h
|
compiler: more strict compiler warnings
|
8 years ago |
detect-engine-register.c
|
Add krb5_err_code detection keyword
|
7 years ago |
detect-engine-register.h
|
Add krb5_err_code detection keyword
|
7 years ago |
detect-engine-siggroup.c
|
detect/prefilter: move hash into detect engine ctx
|
8 years ago |
detect-engine-siggroup.h
|
detect/prefilter: move hash into detect engine ctx
|
8 years ago |
detect-engine-sigorder.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-engine-sigorder.h
|
…
|
|
detect-engine-state.c
|
app-layer: remove unused HasTxDetectState call
|
8 years ago |
detect-engine-state.h
|
detect/state: clean up old code
|
8 years ago |
detect-engine-tag.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-engine-tag.h
|
…
|
|
detect-engine-threshold.c
|
threshold: minor cleanups
|
8 years ago |
detect-engine-threshold.h
|
rate_filter by_both through IPPair storage
|
8 years ago |
detect-engine-tls.c
|
detect-tls-sni: use *_Register2 API functions
|
7 years ago |
detect-engine-tls.h
|
detect-tls-sni: use *_Register2 API functions
|
7 years ago |
detect-engine-uri.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-engine-uri.h
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-engine.c
|
detect: reload-rules shouldn't reload a stub
|
7 years ago |
detect-engine.h
|
detect: make detect engine types explicit
|
7 years ago |
detect-fast-pattern.c
|
detect: register dynamic buffers into de_ctx
|
8 years ago |
detect-fast-pattern.h
|
detect: move buffer type map into detect ctx
|
8 years ago |
detect-file-data.c
|
detect-engine: add DetectEngineCtx to setup callback function
|
7 years ago |
detect-file-data.h
|
…
|
|
detect-file-hash-common.c
|
detect/file: cleanups
|
8 years ago |
detect-file-hash-common.h
|
compiler: more strict compiler warnings
|
8 years ago |
detect-fileext.c
|
detect/file: cleanups
|
8 years ago |
detect-fileext.h
|
…
|
|
detect-filemagic.c
|
docs: replace redmine links and enforce https on oisf urls
|
8 years ago |
detect-filemagic.h
|
magic: make optional
|
9 years ago |
detect-filemd5.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-filemd5.h
|
file-hashing: common code added
|
9 years ago |
detect-filename.c
|
rust/smb: initial support
|
7 years ago |
detect-filename.h
|
…
|
|
detect-filesha1.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-filesha1.h
|
file-hashing: added support for SHA-1 file hashing
|
9 years ago |
detect-filesha256.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-filesha256.h
|
file-hashing: added support for SHA-256 file hashing
|
9 years ago |
detect-filesize.c
|
keyword-filesize: add units
|
8 years ago |
detect-filesize.h
|
…
|
|
detect-filestore.c
|
file: clarify file store id name
|
8 years ago |
detect-filestore.h
|
detect: constify Signature/SigMatch use at runtime
|
9 years ago |
detect-flags.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-flags.h
|
…
|
|
detect-flow.c
|
detect: set implied flow direction based on keywords
|
8 years ago |
detect-flow.h
|
detect: set implied flow direction based on keywords
|
8 years ago |
detect-flowbits.c
|
detect: register dynamic buffers into de_ctx
|
8 years ago |
detect-flowbits.h
|
var-names: expose outside of detect engine
|
9 years ago |
detect-flowint.c
|
detect/flowint: harden code
|
8 years ago |
detect-flowint.h
|
var-names: expose outside of detect engine
|
9 years ago |
detect-flowvar.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-flowvar.h
|
pktvars: same name pktvars, key-value vars
|
9 years ago |
detect-fragbits.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-fragbits.h
|
prefilter: implement fragbits
|
9 years ago |
detect-fragoffset.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-fragoffset.h
|
…
|
|
detect-ftpbounce.c
|
detect-ftpdata: match on ftp-data operation
|
8 years ago |
detect-ftpbounce.h
|
…
|
|
detect-ftpdata.c
|
detect-ftpdata: match on ftp-data operation
|
8 years ago |
detect-ftpdata.h
|
detect-ftpdata: match on ftp-data operation
|
8 years ago |
detect-geoip.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
detect-geoip.h
|
…
|
|
detect-gid.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-gid.h
|
…
|
|
detect-hostbits.c
|
hostbits: fix test setup
|
8 years ago |
detect-hostbits.h
|
…
|
|
detect-http-accept-enc.c
|
doc: fix doc links for http keywords
|
8 years ago |
detect-http-accept-enc.h
|
detect: implement http_accept_enc sticky buffer
|
8 years ago |
detect-http-accept-lang.c
|
doc: fix doc links for http keywords
|
8 years ago |
detect-http-accept-lang.h
|
detect: implement http_accept_lang sticky buffer
|
8 years ago |
detect-http-accept.c
|
doc: fix doc links for http keywords
|
8 years ago |
detect-http-accept.h
|
detect: http_accept sticky buffer + common code
|
8 years ago |
detect-http-client-body.c
|
detect-engine: add DetectEngineCtx to setup callback function
|
7 years ago |
detect-http-client-body.h
|
…
|
|
detect-http-connection.c
|
doc: fix doc links for http keywords
|
8 years ago |
detect-http-connection.h
|
detect: implement http_connection sticky buffer
|
8 years ago |
detect-http-content-len.c
|
doc: fix doc links for http keywords
|
8 years ago |
detect-http-content-len.h
|
detect: implement http_content_len sticky buffer
|
8 years ago |
detect-http-content-type.c
|
doc: fix doc links for http keywords
|
8 years ago |
detect-http-content-type.h
|
detect: implement http_content_type sticky buffer
|
8 years ago |
detect-http-cookie.c
|
detect: rewrite of the detect engine
|
8 years ago |
detect-http-cookie.h
|
…
|
|
detect-http-header-common.c
|
cleanup: remove all uint use
|
8 years ago |
detect-http-header-common.h
|
http_header: common detection code
|
9 years ago |
detect-http-header-names.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-http-header-names.h
|
detect: http_header_names sticky buffer keyword
|
9 years ago |
detect-http-header.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-http-header.h
|
http_header: move all code into keyword files
|
9 years ago |
detect-http-headers-stub.h
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-http-headers.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-http-headers.h
|
detect: http_accept sticky buffer + common code
|
8 years ago |
detect-http-hh.c
|
detect: rewrite of the detect engine
|
8 years ago |
detect-http-hh.h
|
…
|
|
detect-http-hrh.c
|
detect: rewrite of the detect engine
|
8 years ago |
detect-http-hrh.h
|
…
|
|
detect-http-method.c
|
detect: rewrite of the detect engine
|
8 years ago |
detect-http-method.h
|
http_method: make list dynamic
|
9 years ago |
detect-http-protocol.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-http-protocol.h
|
detect: add http_protocol sticky buffer
|
9 years ago |
detect-http-raw-header.c
|
detect: rewrite of the detect engine
|
8 years ago |
detect-http-raw-header.h
|
…
|
|
detect-http-raw-uri.c
|
detect-engine: add DetectEngineCtx to setup callback function
|
7 years ago |
detect-http-raw-uri.h
|
…
|
|
detect-http-referer.c
|
doc: fix doc links for http keywords
|
8 years ago |
detect-http-referer.h
|
detect: implement http referer sticky buffer
|
8 years ago |
detect-http-request-line.c
|
detect/bsize: tests for http_request_line
|
8 years ago |
detect-http-request-line.h
|
http_request_line: register inspect engine from keyword
|
9 years ago |
detect-http-response-line.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-http-response-line.h
|
http_response_line: register inspect engine from keyword
|
9 years ago |
detect-http-server-body.c
|
tests: update tests for app-layer changes
|
8 years ago |
detect-http-server-body.h
|
…
|
|
detect-http-start.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-http-start.h
|
detect: http_start sticky buffer
|
9 years ago |
detect-http-stat-code.c
|
detect: rewrite of the detect engine
|
8 years ago |
detect-http-stat-code.h
|
…
|
|
detect-http-stat-msg.c
|
detect: rewrite of the detect engine
|
8 years ago |
detect-http-stat-msg.h
|
…
|
|
detect-http-ua.c
|
detect: rewrite of the detect engine
|
8 years ago |
detect-http-ua.h
|
…
|
|
detect-http-uri.c
|
detect-engine: add DetectEngineCtx to setup callback function
|
7 years ago |
detect-http-uri.h
|
compiler: more strict compiler warnings
|
8 years ago |
detect-icmp-id.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-icmp-id.h
|
…
|
|
detect-icmp-seq.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-icmp-seq.h
|
…
|
|
detect-icode.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-icode.h
|
detect-icode: implement as u8 hash prefilter
|
9 years ago |
detect-id.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-id.h
|
…
|
|
detect-ipopts.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-ipopts.h
|
detect-ipopts: optimize matching
|
9 years ago |
detect-ipproto.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-ipproto.h
|
…
|
|
detect-iprep.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-iprep.h
|
…
|
|
detect-isdataat.c
|
content inspection: support transforms
|
8 years ago |
detect-isdataat.h
|
…
|
|
detect-itype.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-itype.h
|
detect-itype: implement as u8 hash prefilter
|
9 years ago |
detect-krb5-cname.c
|
Add krb5_cname and krb5_sname detection keywords
|
7 years ago |
detect-krb5-cname.h
|
Add krb5_cname and krb5_sname detection keywords
|
7 years ago |
detect-krb5-errcode.c
|
Add krb5_err_code detection keyword
|
7 years ago |
detect-krb5-errcode.h
|
Add krb5_err_code detection keyword
|
7 years ago |
detect-krb5-msgtype.c
|
Add krb5_msg_type detection keyword
|
7 years ago |
detect-krb5-msgtype.h
|
Add krb5_msg_type detection keyword
|
7 years ago |
detect-krb5-sname.c
|
Add krb5_cname and krb5_sname detection keywords
|
7 years ago |
detect-krb5-sname.h
|
Add krb5_cname and krb5_sname detection keywords
|
7 years ago |
detect-l3proto.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-l3proto.h
|
…
|
|
detect-lua-extensions.c
|
lua: add Ja3GetHash function
|
7 years ago |
detect-lua-extensions.h
|
lua: remove flow locking from the lua layer
|
9 years ago |
detect-lua.c
|
docs: replace redmine links and enforce https on oisf urls
|
8 years ago |
detect-lua.h
|
var-names: expose outside of detect engine
|
9 years ago |
detect-mark.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-mark.h
|
…
|
|
detect-metadata.c
|
metadata: fix parsing when not k/v
|
8 years ago |
detect-metadata.h
|
detect-metadata: add a string storage to de_ctx
|
8 years ago |
detect-modbus.c
|
modbus: Support Unit Identifier
|
7 years ago |
detect-modbus.h
|
modbus: Support Unit Identifier
|
7 years ago |
detect-msg.c
|
detect-msg: cleanup error message
|
8 years ago |
detect-msg.h
|
…
|
|
detect-nfs-procedure.c
|
app-layer: add tx iterator API
|
8 years ago |
detect-nfs-procedure.h
|
nfs: rename nfs3 to nfs
|
8 years ago |
detect-nfs-version.c
|
app-layer: add tx iterator API
|
8 years ago |
detect-nfs-version.h
|
nfs: nfs_version keyword
|
8 years ago |
detect-noalert.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-noalert.h
|
…
|
|
detect-nocase.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-nocase.h
|
…
|
|
detect-offset.c
|
detect/content: introduce startswith modifier
|
8 years ago |
detect-offset.h
|
…
|
|
detect-parse.c
|
detect/stream_size: apply rule to packets & stream
|
7 years ago |
detect-parse.h
|
detect: move buffer type map into detect ctx
|
8 years ago |
detect-pcre.c
|
content inspection: support transforms
|
8 years ago |
detect-pcre.h
|
pcre: support multiple captures
|
9 years ago |
detect-pkt-data.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-pkt-data.h
|
…
|
|
detect-pktvar.c
|
detect/pktvar: clean up keyword parsing
|
7 years ago |
detect-pktvar.h
|
pkt-var: use id instead of name pointer
|
9 years ago |
detect-prefilter.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-prefilter.h
|
prefilter: implement prefilter keyword
|
9 years ago |
detect-priority.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-priority.h
|
…
|
|
detect-rawbytes.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-rawbytes.h
|
…
|
|
detect-reference.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-reference.h
|
…
|
|
detect-replace.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-replace.h
|
…
|
|
detect-rev.c
|
rule-parser: detect duplicate rev keyword
|
8 years ago |
detect-rev.h
|
…
|
|
detect-rpc.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
detect-rpc.h
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
detect-sameip.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-sameip.h
|
…
|
|
detect-seq.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-seq.h
|
…
|
|
detect-sid.c
|
rule-parser: detect duplicate sid keyword
|
8 years ago |
detect-sid.h
|
…
|
|
detect-smb-share.c
|
smb: use inspect API v2 for smb keywords
|
7 years ago |
detect-smb-share.h
|
rust/smb: initial support
|
7 years ago |
detect-ssh-proto-version.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-ssh-proto-version.h
|
…
|
|
detect-ssh-proto.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-ssh-proto.h
|
detect: ssh_proto stickybuffer
|
9 years ago |
detect-ssh-software-version.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-ssh-software-version.h
|
detect: make ssh detection use dynamic list
|
9 years ago |
detect-ssh-software.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-ssh-software.h
|
detect: ssh_software sticky buffer
|
9 years ago |
detect-ssl-state.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-ssl-state.h
|
ssl: issue 1231 - support ssl state negation
|
9 years ago |
detect-ssl-version.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-ssl-version.h
|
…
|
|
detect-stream_size.c
|
detect/stream_size: code cleanups
|
7 years ago |
detect-stream_size.h
|
…
|
|
detect-tag.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-tag.h
|
…
|
|
detect-target.c
|
detect-target: introduce new keyword
|
8 years ago |
detect-target.h
|
detect-target: introduce new keyword
|
8 years ago |
detect-template-buffer.c
|
detect/content: pass START/END flags to inspection
|
8 years ago |
detect-template-buffer.h
|
template: minor updates
|
8 years ago |
detect-template.c
|
template: minor updates
|
8 years ago |
detect-template.h
|
template: minor updates
|
8 years ago |
detect-threshold.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-threshold.h
|
rate_filter by_both through IPPair storage
|
8 years ago |
detect-tls-cert-fingerprint.c
|
detect-tls-cert-fingerprint: fix typo in unittest
|
7 years ago |
detect-tls-cert-fingerprint.h
|
detect: add (mpm) keyword tls_cert_fingerprint
|
8 years ago |
detect-tls-cert-issuer.c
|
detect-tls-cert-issuer: use *_Register2 API functions
|
7 years ago |
detect-tls-cert-issuer.h
|
tls: mpm prefilter engines
|
9 years ago |
detect-tls-cert-serial.c
|
detect-tls-cert-serial: add warning if nocase is used
|
7 years ago |
detect-tls-cert-serial.h
|
detect: add (mpm) keyword tls_cert_serial
|
9 years ago |
detect-tls-cert-subject.c
|
detect-tls-cert-subject: use *_Register2 API functions
|
7 years ago |
detect-tls-cert-subject.h
|
tls: mpm prefilter engines
|
9 years ago |
detect-tls-cert-validity.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-tls-cert-validity.h
|
detect: add keyword tls_cert_valid
|
9 years ago |
detect-tls-ja3-hash.c
|
detect-tls-ja3-hash: add setup callback to lowercase content
|
7 years ago |
detect-tls-ja3-hash.h
|
detect: add (mpm) keyword ja3_hash
|
7 years ago |
detect-tls-ja3-string.c
|
detect: add (mpm) keyword ja3_string
|
7 years ago |
detect-tls-ja3-string.h
|
detect: add (mpm) keyword ja3_string
|
7 years ago |
detect-tls-sni.c
|
detect-tls-sni: use *_Register2 API functions
|
7 years ago |
detect-tls-sni.h
|
mpm tls: remove unused function args
|
9 years ago |
detect-tls-version.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-tls-version.h
|
…
|
|
detect-tls.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-tls.h
|
…
|
|
detect-tos.c
|
detect/tos: minor cleanups
|
8 years ago |
detect-tos.h
|
…
|
|
detect-transform-compress-whitespace.c
|
detect/transform: initial compress_whitespace implementation
|
8 years ago |
detect-transform-compress-whitespace.h
|
detect/transform: initial compress_whitespace implementation
|
8 years ago |
detect-transform-sha256.c
|
detect/transform: initial to_sha256 implementation
|
8 years ago |
detect-transform-sha256.h
|
detect/transform: initial to_sha256 implementation
|
8 years ago |
detect-transform-strip-whitespace.c
|
detect/transform: initial strip_whitespace implementation
|
8 years ago |
detect-transform-strip-whitespace.h
|
detect/transform: initial strip_whitespace implementation
|
8 years ago |
detect-ttl.c
|
detect/prefilter: add de_ctx to registration
|
8 years ago |
detect-ttl.h
|
…
|
|
detect-uricontent.c
|
tests: update tests for app-layer changes
|
8 years ago |
detect-uricontent.h
|
uricontent: remove left over func decl
|
9 years ago |
detect-urilen.c
|
detect: save invalid rules
|
8 years ago |
detect-urilen.h
|
detect: save invalid rules
|
8 years ago |
detect-window.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-window.h
|
…
|
|
detect-within.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-within.h
|
…
|
|
detect-xbits.c
|
compiler: more strict compiler warnings
|
8 years ago |
detect-xbits.h
|
var-names: expose outside of detect engine
|
9 years ago |
detect.c
|
detect: fix tx iterator logic in detect
|
7 years ago |
detect.h
|
detect: make detect engine types explicit
|
7 years ago |
device-storage.c
|
device-storage: introduce feature
|
8 years ago |
device-storage.h
|
device-storage: introduce feature
|
8 years ago |
flow-bit.c
|
var-names: expose outside of detect engine
|
9 years ago |
flow-bit.h
|
flowvar: shrink flowvar type by using padded space
|
9 years ago |
flow-bypass.c
|
flow-bypass: introduce update function
|
8 years ago |
flow-bypass.h
|
flow-bypass: introduce update function
|
8 years ago |
flow-hash.c
|
flow: track flow for ICMP
|
7 years ago |
flow-hash.h
|
flow-manager: optimize hash walking
|
9 years ago |
flow-manager.c
|
signal: use centralized pthread_sigmask for signals
|
8 years ago |
flow-manager.h
|
flow: simplify timeout logic
|
9 years ago |
flow-private.h
|
cleanup: get rid of %llu format specifiers
|
8 years ago |
flow-queue.c
|
…
|
|
flow-queue.h
|
compiler: more strict compiler warnings
|
8 years ago |
flow-storage.c
|
compiler: more strict compiler warnings
|
8 years ago |
flow-storage.h
|
…
|
|
flow-timeout.c
|
tests: update tests for app-layer changes
|
8 years ago |
flow-timeout.h
|
…
|
|
flow-util.c
|
flow: track flow for ICMP
|
7 years ago |
flow-util.h
|
flow: add parent_id field
|
8 years ago |
flow-var.c
|
detect/flowint: harden code
|
8 years ago |
flow-var.h
|
flowvar: shrink flowvar type by using padded space
|
9 years ago |
flow-worker.c
|
app-layer: improve async and out of order txs
|
8 years ago |
flow-worker.h
|
profile: account flow-worker tcp-prune step
|
8 years ago |
flow.c
|
flow-bypass: introduce update function
|
8 years ago |
flow.h
|
flow: track flow for ICMP
|
7 years ago |
host-bit.c
|
compiler: more strict compiler warnings
|
8 years ago |
host-bit.h
|
hostbits: add list API
|
9 years ago |
host-queue.c
|
…
|
|
host-queue.h
|
compiler: more strict compiler warnings
|
8 years ago |
host-storage.c
|
…
|
|
host-storage.h
|
…
|
|
host-timeout.c
|
rate_filter by_both through IPPair storage
|
8 years ago |
host-timeout.h
|
…
|
|
host.c
|
host: get/set memcap value
|
8 years ago |
host.h
|
host: get/set memcap value
|
8 years ago |
ippair-bit.c
|
compiler: more strict compiler warnings
|
8 years ago |
ippair-bit.h
|
var-names: expose outside of detect engine
|
9 years ago |
ippair-queue.c
|
…
|
|
ippair-queue.h
|
compiler: more strict compiler warnings
|
8 years ago |
ippair-storage.c
|
…
|
|
ippair-storage.h
|
…
|
|
ippair-timeout.c
|
rate_filter by_both through IPPair storage
|
8 years ago |
ippair-timeout.h
|
…
|
|
ippair.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
ippair.h
|
ippair: get/set memcap value
|
8 years ago |
log-cf-common.c
|
compiler: more strict compiler warnings
|
8 years ago |
log-cf-common.h
|
log: tls custom format log
|
8 years ago |
log-dnslog.c
|
output: introduce init return type
|
8 years ago |
log-dnslog.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
log-droplog.c
|
output: introduce init return type
|
8 years ago |
log-droplog.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
log-file.c
|
file: update logger API to log direction
|
7 years ago |
log-file.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
log-filestore.c
|
gcc8: fix format truncation warnings
|
7 years ago |
log-filestore.h
|
filestore: avoid open write close sequence
|
8 years ago |
log-httplog.c
|
output: introduce init return type
|
8 years ago |
log-httplog.h
|
output: introduce init return type
|
8 years ago |
log-pcap.c
|
pcap-log: don't divide by 0 on no traffic
|
7 years ago |
log-pcap.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
log-stats.c
|
output: introduce init return type
|
8 years ago |
log-stats.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
log-tcp-data.c
|
output: introduce init return type
|
8 years ago |
log-tcp-data.h
|
output: introduce init return type
|
8 years ago |
log-tlslog.c
|
output: introduce init return type
|
8 years ago |
log-tlslog.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
log-tlsstore.c
|
gcc8: fix format truncation warnings
|
7 years ago |
log-tlsstore.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-file.c
|
file: update logger API to log direction
|
7 years ago |
output-file.h
|
file: update logger API to log direction
|
7 years ago |
output-filedata.c
|
file: update logger API to log direction
|
7 years ago |
output-filedata.h
|
file: update logger API to log direction
|
7 years ago |
output-filestore.c
|
filestore: fix truncation warnings
|
7 years ago |
output-filestore.h
|
filestore v2 - initial version
|
8 years ago |
output-flow.c
|
compiler: more strict compiler warnings
|
8 years ago |
output-flow.h
|
logging: convert json flow output to non-thread module
|
9 years ago |
output-json-alert.c
|
output-json-alert: log correct dns and dnp3 tx
|
7 years ago |
output-json-alert.h
|
output-json-alert: conditionaly output metadata
|
8 years ago |
output-json-dhcp.c
|
rust/dhcp: Rust based DHCP decoder and logger.
|
7 years ago |
output-json-dhcp.h
|
dhcp: add author
|
7 years ago |
output-json-dnp3-objects.c
|
compiler: more strict compiler warnings
|
8 years ago |
output-json-dnp3-objects.h
|
DNP3: Log DNP3 transactions.
|
9 years ago |
output-json-dnp3.c
|
output/json: update callers to use explicit directions
|
7 years ago |
output-json-dnp3.h
|
DNP3: Log DNP3 transactions.
|
9 years ago |
output-json-dns.c
|
rust/dns: default to eve log version 2 for rust
|
7 years ago |
output-json-dns.h
|
output-json-dns: add json logging functions
|
7 years ago |
output-json-drop.c
|
output/json: update callers to use explicit directions
|
7 years ago |
output-json-drop.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-json-email-common.c
|
compiler: more strict compiler warnings
|
8 years ago |
output-json-email-common.h
|
eve: email: respect global metadata config
|
8 years ago |
output-json-file.c
|
eve/json/xff - remove check for flow being NULL.
|
7 years ago |
output-json-file.h
|
xff: Use XFF configuration in eve and filestore
|
7 years ago |
output-json-flow.c
|
flow: track flow for ICMP
|
7 years ago |
output-json-flow.h
|
output-json-alert: add app_proto or flow to events
|
8 years ago |
output-json-http.c
|
eve/http: use eve-level xff config by default
|
7 years ago |
output-json-http.h
|
output-json-http: add functions to log http body
|
8 years ago |
output-json-ikev2.c
|
IKEv2: suppress some debug output
|
7 years ago |
output-json-ikev2.h
|
Add logger for IKEv2
|
7 years ago |
output-json-krb5.c
|
Kerberos 5: add support for TCP as well
|
7 years ago |
output-json-krb5.h
|
kerberos: minor doc updates, add author
|
7 years ago |
output-json-metadata.c
|
output/json: update callers to use explicit directions
|
7 years ago |
output-json-metadata.h
|
output-json-vars: rename to metadata
|
8 years ago |
output-json-netflow.c
|
eve/netflow: only log response record if we've seen response pkts
|
7 years ago |
output-json-netflow.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-json-nfs.c
|
output/json: update callers to use explicit directions
|
7 years ago |
output-json-nfs.h
|
nfs: add to fileinfo events
|
8 years ago |
output-json-smb.c
|
rust/smb: initial support
|
7 years ago |
output-json-smb.h
|
rust/smb: initial support
|
7 years ago |
output-json-smtp.c
|
output/json: update callers to use explicit directions
|
7 years ago |
output-json-smtp.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-json-ssh.c
|
output/json: update callers to use explicit directions
|
7 years ago |
output-json-ssh.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-json-stats.c
|
output: introduce init return type
|
8 years ago |
output-json-stats.h
|
json-stats: print engine stats
|
8 years ago |
output-json-template.c
|
output/json: update callers to use explicit directions
|
7 years ago |
output-json-template.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-json-tftp.c
|
output/json: update callers to use explicit directions
|
7 years ago |
output-json-tftp.h
|
rust/tftp: add tftp parsing and logging
|
8 years ago |
output-json-tls.c
|
tls: replace variable in header file with TAILQ_EMPTY()
|
7 years ago |
output-json-tls.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-json.c
|
eve: use eve-level xff configuration
|
7 years ago |
output-json.h
|
eve: use eve-level xff configuration
|
7 years ago |
output-lua.c
|
Fix segfault when the protocol is anything other than HTTP
|
7 years ago |
output-lua.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-packet.c
|
compiler: more strict compiler warnings
|
8 years ago |
output-packet.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-stats.c
|
compiler: more strict compiler warnings
|
8 years ago |
output-stats.h
|
logging: convert stats loggers to non-thread module
|
9 years ago |
output-streaming.c
|
output/streaming: fixes and redo tcp logging
|
8 years ago |
output-streaming.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output-tx.c
|
app-layer: add tx iterator API
|
8 years ago |
output-tx.h
|
logging: rename registration functions to not have tmm
|
9 years ago |
output.c
|
rust/dhcp: Rust based DHCP decoder and logger.
|
7 years ago |
output.h
|
output: introduce init return type
|
8 years ago |
packet-queue.c
|
compiler: more strict compiler warnings
|
8 years ago |
packet-queue.h
|
…
|
|
pkt-var.c
|
pktvars: same name pktvars, key-value vars
|
9 years ago |
pkt-var.h
|
pktvars: same name pktvars, key-value vars
|
9 years ago |
queue.h
|
queue: add debug assertions to TAILQ
|
9 years ago |
reputation.c
|
compiler: more strict compiler warnings
|
8 years ago |
reputation.h
|
compiler: more strict compiler warnings
|
8 years ago |
respond-reject-libnet11.c
|
libnet: work around older libnet type difference
|
9 years ago |
respond-reject-libnet11.h
|
…
|
|
respond-reject.c
|
…
|
|
respond-reject.h
|
…
|
|
runmode-af-packet.c
|
af-packet: XDP bypass in IPS mode
|
8 years ago |
runmode-af-packet.h
|
compiler: more strict compiler warnings
|
8 years ago |
runmode-erf-dag.c
|
…
|
|
runmode-erf-dag.h
|
…
|
|
runmode-erf-file.c
|
gcc7: fix format-truncation warnings in runmodes
|
8 years ago |
runmode-erf-file.h
|
…
|
|
runmode-ipfw.c
|
…
|
|
runmode-ipfw.h
|
…
|
|
runmode-napatech.c
|
napatech: fix minor memleak in error path
|
8 years ago |
runmode-napatech.h
|
napatech: Implementation of packet counters
|
8 years ago |
runmode-netmap.c
|
output: introduce init return type
|
8 years ago |
runmode-netmap.h
|
compiler: more strict compiler warnings
|
8 years ago |
runmode-nflog.c
|
compiler: more strict compiler warnings
|
8 years ago |
runmode-nflog.h
|
…
|
|
runmode-nfq.c
|
…
|
|
runmode-nfq.h
|
…
|
|
runmode-pcap-file.c
|
gcc7: fix format-truncation warnings in runmodes
|
8 years ago |
runmode-pcap-file.h
|
…
|
|
runmode-pcap.c
|
output: introduce init return type
|
8 years ago |
runmode-pcap.h
|
…
|
|
runmode-pfring.c
|
pfring: various build issues
|
8 years ago |
runmode-pfring.h
|
…
|
|
runmode-tile.c
|
flowworker: initial support
|
9 years ago |
runmode-tile.h
|
…
|
|
runmode-unittests.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
runmode-unittests.h
|
gcc7: fixes for format string warnings
|
8 years ago |
runmode-unix-socket.c
|
unix/multi-tenant: improve (log) messages
|
7 years ago |
runmode-unix-socket.h
|
runmode-unix-socket: add commands for memcap handling
|
8 years ago |
runmode-windivert.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
runmode-windivert.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
runmodes.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
runmodes.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
rust.h
|
rust/smb: initial support
|
7 years ago |
source-af-packet.c
|
packet: gre over ip link type
|
7 years ago |
source-af-packet.h
|
af-packet: end of map factoring
|
8 years ago |
source-erf-dag.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
source-erf-dag.h
|
…
|
|
source-erf-file.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
source-erf-file.h
|
…
|
|
source-ipfw.c
|
util-device: change logic of registration
|
8 years ago |
source-ipfw.h
|
…
|
|
source-mpipe.c
|
livedev: shorten devname at registration
|
9 years ago |
source-mpipe.h
|
…
|
|
source-napatech.c
|
napatech: Implementation of packet counters
|
8 years ago |
source-napatech.h
|
napatech: Implementation of packet counters
|
8 years ago |
source-netmap.c
|
cuda: remove
|
8 years ago |
source-netmap.h
|
compiler: more strict compiler warnings
|
8 years ago |
source-nflog.c
|
nflog: compiler warning fix
|
8 years ago |
source-nflog.h
|
…
|
|
source-nfq-prototypes.h
|
…
|
|
source-nfq.c
|
util-device: change logic of registration
|
8 years ago |
source-nfq.h
|
nfq: remove obsolete and broken netfilterforwin support
|
8 years ago |
source-pcap-file-directory-helper.c
|
eve: log pcap filename
|
7 years ago |
source-pcap-file-directory-helper.h
|
source-pcap-file: Directory mode may miss files (bug #2394)
|
7 years ago |
source-pcap-file-helper.c
|
packet: gre over ip link type
|
7 years ago |
source-pcap-file-helper.h
|
source-pcap-file: Pcap Directory Mode (Feature #2222)
|
8 years ago |
source-pcap-file.c
|
pcap/file: fix missing files stopping engine #2451
|
7 years ago |
source-pcap-file.h
|
eve: log pcap filename
|
7 years ago |
source-pcap.c
|
packet: gre over ip link type
|
7 years ago |
source-pcap.h
|
compiler: more strict compiler warnings
|
8 years ago |
source-pfring.c
|
pfring: minor code cleanups
|
8 years ago |
source-pfring.h
|
pfring: various build issues
|
8 years ago |
source-windivert-prototypes.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
source-windivert.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
source-windivert.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
stream-tcp-inline.c
|
stream-tcp: use flags field to store inline info
|
8 years ago |
stream-tcp-inline.h
|
stream-tcp: use flags field to store inline info
|
8 years ago |
stream-tcp-list.c
|
stream: improve overlap detection
|
8 years ago |
stream-tcp-list.h
|
tcp: streaming implementation
|
8 years ago |
stream-tcp-private.h
|
bypass: add explicit flag in stream engine
|
8 years ago |
stream-tcp-reassemble.c
|
stream-tcp: fix stream depth computation
|
7 years ago |
stream-tcp-reassemble.h
|
stream-tcp: get/set memcap value
|
8 years ago |
stream-tcp-sack.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
stream-tcp-sack.h
|
…
|
|
stream-tcp-util.c
|
app-layer-expectation: expectation system
|
8 years ago |
stream-tcp-util.h
|
tcp: streaming implementation
|
8 years ago |
stream-tcp.c
|
stream-tcp: add counters for midstream pickups
|
7 years ago |
stream-tcp.h
|
stream-tcp: add counters for midstream pickups
|
7 years ago |
stream.c
|
detect / stream: new 'raw' stream inspection
|
8 years ago |
stream.h
|
detect / stream: new 'raw' stream inspection
|
8 years ago |
suricata-common.h
|
rust/dhcp: Rust based DHCP decoder and logger.
|
7 years ago |
suricata.c
|
detect: make detect engine types explicit
|
7 years ago |
suricata.h
|
docs: replace redmine links and enforce https on oisf urls
|
8 years ago |
threads-arch-tile.h
|
…
|
|
threads-debug.h
|
…
|
|
threads-profile.h
|
…
|
|
threads.c
|
compiler: more strict compiler warnings
|
8 years ago |
threads.h
|
threads: fix -Wshadow warnings
|
9 years ago |
threadvars.h
|
stats: use unshortened interface names in counters
|
8 years ago |
tm-modules.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
tm-modules.h
|
compiler: more strict compiler warnings
|
8 years ago |
tm-queuehandlers.c
|
compiler: more strict compiler warnings
|
8 years ago |
tm-queuehandlers.h
|
compiler: more strict compiler warnings
|
8 years ago |
tm-queues.c
|
cuda: remove
|
8 years ago |
tm-queues.h
|
cuda: remove
|
8 years ago |
tm-threads-common.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
tm-threads.c
|
tm-threads: fix build warning in afl mode
|
8 years ago |
tm-threads.h
|
compiler: more strict compiler warnings
|
8 years ago |
tmqh-flow.c
|
compiler: more strict compiler warnings
|
8 years ago |
tmqh-flow.h
|
autofp: update queue handlers
|
9 years ago |
tmqh-nfq.c
|
compiler: more strict compiler warnings
|
8 years ago |
tmqh-nfq.h
|
…
|
|
tmqh-packetpool.c
|
hosts: release packet references to hosts
|
8 years ago |
tmqh-packetpool.h
|
…
|
|
tmqh-simple.c
|
cuda: remove
|
8 years ago |
tmqh-simple.h
|
cuda: remove
|
8 years ago |
unix-manager.c
|
unix-socket: add ebpf-bypassed-stats command
|
8 years ago |
unix-manager.h
|
bug 2113: unix-socket start up race
|
8 years ago |
util-action.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-action.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-affinity.c
|
util-affinity: export CPU set parsing function
|
8 years ago |
util-affinity.h
|
util-affinity: export CPU set parsing function
|
8 years ago |
util-atomic.c
|
…
|
|
util-atomic.h
|
…
|
|
util-base64.c
|
…
|
|
util-base64.h
|
…
|
|
util-binsearch.c
|
…
|
|
util-binsearch.h
|
…
|
|
util-bloomfilter-counting.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-bloomfilter-counting.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-bloomfilter.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-bloomfilter.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-buffer.c
|
…
|
|
util-buffer.h
|
af-packet: add support for eBPF cluster and filter
|
8 years ago |
util-byte.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-byte.h
|
byteswap: fix compilation on SunOS
|
9 years ago |
util-checksum.c
|
ipv4: update checksum function to be like tcp/udp
|
8 years ago |
util-checksum.h
|
…
|
|
util-cidr.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-cidr.h
|
…
|
|
util-classification-config.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-classification-config.h
|
…
|
|
util-clock.h
|
…
|
|
util-conf.c
|
conf: NULL-pointer dereference in ConfUnixSocketIsEnable
|
8 years ago |
util-conf.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-coredump-config.c
|
conf: fix NULL-pointer dereference in CoredumpLoadConfig
|
8 years ago |
util-coredump-config.h
|
…
|
|
util-cpu.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-cpu.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-crypt.c
|
…
|
|
util-crypt.h
|
app-layer-ssl: reimplement function for decoding certificates
|
7 years ago |
util-daemon.c
|
conf: user-configurable umask setting
|
7 years ago |
util-daemon.h
|
…
|
|
util-debug-filters.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-debug-filters.h
|
…
|
|
util-debug.c
|
Print syslog format with SCLogDebug() instead of printf()
|
7 years ago |
util-debug.h
|
Bug #2466: map SC_LOG_CONFIG level to syslogs LOG_DEBUG
|
7 years ago |
util-decode-asn1.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-decode-asn1.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-decode-der-get.c
|
app-layer-tls: decode certificate serial number
|
9 years ago |
util-decode-der-get.h
|
app-layer-tls: decode certificate serial number
|
9 years ago |
util-decode-der.c
|
der: don't overwrite errcode
|
7 years ago |
util-decode-der.h
|
DER parser: ensure errcode is set for every return path
|
7 years ago |
util-decode-mime.c
|
ipv6: add string validation function
|
8 years ago |
util-decode-mime.h
|
…
|
|
util-detect.c
|
detect: save invalid rules
|
8 years ago |
util-detect.h
|
detect: save invalid rules
|
8 years ago |
util-device.c
|
unix-socket: add bypassed counter to iface-stat
|
8 years ago |
util-device.h
|
util-device: change logic of registration
|
8 years ago |
util-ebpf.c
|
util-ebpf: rename local variable
|
8 years ago |
util-ebpf.h
|
unix-socket: add ebpf-bypassed-stats command
|
8 years ago |
util-enum.c
|
enum: don't printf on util-enum errors
|
8 years ago |
util-enum.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-error.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
util-error.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
util-file-decompression.c
|
flash: code cleanups
|
8 years ago |
util-file-decompression.h
|
file_data: update to API v2
|
8 years ago |
util-file-swf-decompression.c
|
flash: code cleanups
|
8 years ago |
util-file-swf-decompression.h
|
flash: code cleanups
|
8 years ago |
util-file.c
|
files: properly close files on flow timeout
|
7 years ago |
util-file.h
|
files: properly close files on flow timeout
|
7 years ago |
util-fix_checksum.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-fix_checksum.h
|
…
|
|
util-fmemopen.c
|
…
|
|
util-fmemopen.h
|
…
|
|
util-hash-lookup3.c
|
gcc7: fixes for format string warnings
|
8 years ago |
util-hash-lookup3.h
|
…
|
|
util-hash.c
|
Hash table: free bucker in case of insertion error
|
8 years ago |
util-hash.h
|
…
|
|
util-hashlist.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-hashlist.h
|
…
|
|
util-host-info.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-host-info.h
|
…
|
|
util-host-os-info.c
|
mingw: work around mingw more liberal ip parsing
|
8 years ago |
util-host-os-info.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-hyperscan.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-hyperscan.h
|
spm: add Hyperscan implementation
|
9 years ago |
util-ioctl.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
util-ioctl.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
util-ip.c
|
ipv6: add string validation function
|
8 years ago |
util-ip.h
|
ipv6: add string validation function
|
8 years ago |
util-ja3.c
|
app-layer-ssl: really fix CID 1433623
|
7 years ago |
util-ja3.h
|
app-layer-ssl: really fix CID 1433623
|
7 years ago |
util-log-redis.c
|
redis: suppress minor coverity warning
|
8 years ago |
util-log-redis.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-logopenfile-tile.c
|
…
|
|
util-logopenfile-tile.h
|
…
|
|
util-logopenfile.c
|
create directory: final arg to control full path or prefix
|
8 years ago |
util-logopenfile.h
|
eve: log pcap filename
|
7 years ago |
util-lua-common.c
|
flow: track flow for ICMP
|
7 years ago |
util-lua-common.h
|
…
|
|
util-lua-dnp3-objects.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-lua-dnp3-objects.h
|
DNP3: Lua detect support.
|
9 years ago |
util-lua-dnp3.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-lua-dnp3.h
|
DNP3: Lua detect support.
|
9 years ago |
util-lua-dns.c
|
rust: lua support for DNS based Rust
|
8 years ago |
util-lua-dns.h
|
…
|
|
util-lua-http.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-lua-http.h
|
…
|
|
util-lua-ja3.c
|
lua: add Ja3GetString function
|
7 years ago |
util-lua-ja3.h
|
lua: add Ja3GetHash function
|
7 years ago |
util-lua-smtp.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-lua-smtp.h
|
Lua: SMTP support; Addresses feature ticket #1775; v5
|
9 years ago |
util-lua-ssh.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-lua-ssh.h
|
…
|
|
util-lua-tls.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-lua-tls.h
|
…
|
|
util-lua.c
|
luajit: cleanup states before return to pool
|
8 years ago |
util-lua.h
|
lua: luajit improvements
|
9 years ago |
util-luajit.c
|
lua: luajit improvements
|
9 years ago |
util-luajit.h
|
lua: luajit improvements
|
9 years ago |
util-magic.c
|
magic: fix compile warnings
|
8 years ago |
util-magic.h
|
magic: make optional
|
9 years ago |
util-mem.h
|
scan-build: don't use memory wrappers
|
8 years ago |
util-memcmp.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-memcmp.h
|
…
|
|
util-memcpy.h
|
…
|
|
util-memrchr.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-memrchr.h
|
…
|
|
util-misc.c
|
conf: fix NULL-pointer dereference in ParseSizeString
|
8 years ago |
util-misc.h
|
…
|
|
util-mpm-ac-bs.c
|
detect: fix buffer length to uint32
|
7 years ago |
util-mpm-ac-bs.h
|
…
|
|
util-mpm-ac-tile-small.c
|
detect: fix buffer length to uint32
|
7 years ago |
util-mpm-ac-tile.c
|
detect: fix buffer length to uint32
|
7 years ago |
util-mpm-ac-tile.h
|
detect: fix buffer length to uint32
|
7 years ago |
util-mpm-ac.c
|
detect: fix buffer length to uint32
|
7 years ago |
util-mpm-ac.h
|
cuda: remove
|
8 years ago |
util-mpm-hs.c
|
detect: fix buffer length to uint32
|
7 years ago |
util-mpm-hs.h
|
…
|
|
util-mpm.c
|
cuda: remove
|
8 years ago |
util-mpm.h
|
detect: fix buffer length to uint32
|
7 years ago |
util-napatech.c
|
napatech: Implementation of packet counters
|
8 years ago |
util-napatech.h
|
napatech: Implementation of packet counters
|
8 years ago |
util-optimize.h
|
…
|
|
util-pages.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-pages.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-path.c
|
SCPathExists - function to see if a path exists
|
8 years ago |
util-path.h
|
SCPathExists - function to see if a path exists
|
8 years ago |
util-pidfile.c
|
mingw: disable pid checking from pidfile
|
8 years ago |
util-pidfile.h
|
…
|
|
util-pool-thread.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-pool-thread.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-pool.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-pool.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-prefilter.c
|
prefilter: rename PatternMatcherQueue datatype
|
9 years ago |
util-prefilter.h
|
prefilter: rename PatternMatcherQueue datatype
|
9 years ago |
util-print.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
util-print.h
|
print: constify input
|
8 years ago |
util-privs.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-privs.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-profiling-keywords.c
|
detect: register dynamic buffers into de_ctx
|
8 years ago |
util-profiling-locks.c
|
profiling: fix const compiler warnings
|
8 years ago |
util-profiling-locks.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-profiling-prefilter.c
|
profiling: suppress debug statements
|
7 years ago |
util-profiling-rulegroups.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-profiling-rules.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-profiling.c
|
rust/smb: initial support
|
7 years ago |
util-profiling.h
|
detect/prefilter: redo profiling
|
8 years ago |
util-proto-name.c
|
…
|
|
util-proto-name.h
|
…
|
|
util-radix-tree.c
|
scan-build: fix warning in radix tree
|
8 years ago |
util-radix-tree.h
|
…
|
|
util-random.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
util-random.h
|
random: improve random logic
|
8 years ago |
util-reference-config.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-reference-config.h
|
…
|
|
util-rohash.c
|
…
|
|
util-rohash.h
|
…
|
|
util-rule-vars.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-rule-vars.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-runmodes.c
|
gcc8: fix format truncation warnings
|
7 years ago |
util-runmodes.h
|
…
|
|
util-running-modes.c
|
cuda: remove
|
8 years ago |
util-running-modes.h
|
cuda: remove
|
8 years ago |
util-signal.c
|
signal: use centralized pthread_sigmask for signals
|
8 years ago |
util-signal.h
|
signal: use centralized pthread_sigmask for signals
|
8 years ago |
util-spm-bm.c
|
detect: fix buffer length to uint32
|
7 years ago |
util-spm-bm.h
|
detect: fix buffer length to uint32
|
7 years ago |
util-spm-bs.c
|
…
|
|
util-spm-bs.h
|
…
|
|
util-spm-bs2bm.c
|
…
|
|
util-spm-bs2bm.h
|
…
|
|
util-spm-hs.c
|
hyperscan: don't abort on payloads > 64k
|
7 years ago |
util-spm-hs.h
|
spm: add Hyperscan implementation
|
9 years ago |
util-spm.c
|
detect: fix buffer length to uint32
|
7 years ago |
util-spm.h
|
detect: fix buffer length to uint32
|
7 years ago |
util-storage.c
|
device-storage: introduce feature
|
8 years ago |
util-storage.h
|
device-storage: introduce feature
|
8 years ago |
util-streaming-buffer.c
|
scan-build: fix warning in streaming buffer
|
8 years ago |
util-streaming-buffer.h
|
streaming: add blocklist
|
8 years ago |
util-strlcatu.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-strlcpyu.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-strptime.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
util-syslog.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-syslog.h
|
…
|
|
util-threshold-config.c
|
threshold: don't touch globals after init
|
7 years ago |
util-threshold-config.h
|
threshold: don't touch globals after init
|
7 years ago |
util-time.c
|
time: Force init cached_minute_start array
|
8 years ago |
util-time.h
|
source-pcap-file: Directory mode may miss files (bug #2394)
|
7 years ago |
util-unittest-helper.c
|
mingw: add SCNtohl and SCNtohs macro's
|
8 years ago |
util-unittest-helper.h
|
unittest/helpers: add helper to assign flow to packet
|
8 years ago |
util-unittest.c
|
compiler: more strict compiler warnings
|
8 years ago |
util-unittest.h
|
compiler: more strict compiler warnings
|
8 years ago |
util-validate.h
|
flowworker: initial support
|
9 years ago |
util-var-name.c
|
flowbits: analyze and dump to json
|
8 years ago |
util-var-name.h
|
flowbits: analyze and dump to json
|
8 years ago |
util-var.c
|
hostbits/xbits: free hostbit
|
9 years ago |
util-var.h
|
flowvar: shrink flowvar type by using padded space
|
9 years ago |
util-vector.h
|
…
|
|
win32-misc.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
win32-misc.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
win32-service.c
|
mingw: service init compile warning fix
|
8 years ago |
win32-service.h
|
…
|
|
win32-syscall.c
|
Adds WinDivert support to Windows builds
|
7 years ago |
win32-syscall.h
|
Adds WinDivert support to Windows builds
|
7 years ago |
win32-syslog.h
|
…
|
|