You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
suricata/src
Victor Julien 75d7c9d64a rust/smb: initial support
Implement SMB app-layer parser for SMB1/2/3. Features:
- file extraction
- eve logging
- existing dce keyword support
- smb_share/smb_named_pipe keyword support (stickybuffers)
- auth meta data extraction (ntlmssp, kerberos5)
7 years ago
..
tests detect: bsize keyword 8 years ago
Makefile.am rust/smb: initial support 7 years ago
action-globals.h
alert-debuglog.c output: introduce init return type 8 years ago
alert-debuglog.h
alert-fastlog.c output: introduce init return type 8 years ago
alert-fastlog.h output: introduce init return type 8 years ago
alert-prelude.c prelude: add protocol information through JSON 7 years ago
alert-prelude.h
alert-syslog.c output: introduce init return type 8 years ago
alert-syslog.h
alert-unified2-alert.c unified2: fix xff extra-data output (Bug #2305) 7 years ago
alert-unified2-alert.h unified2: fix xff extra-data output (Bug #2305) 7 years ago
app-layer-dcerpc-common.h dcerpc: improve stub buffer handling 8 years ago
app-layer-dcerpc-udp.c app-layer: remove unused HasTxDetectState call 8 years ago
app-layer-dcerpc-udp.h dcerpc/udp: add missing tx support 8 years ago
app-layer-dcerpc.c app-layer: remove unused HasTxDetectState call 8 years ago
app-layer-dcerpc.h
app-layer-detect-proto.c detect/prefilter: move hash into detect engine ctx 8 years ago
app-layer-detect-proto.h app-layer-expectation: expectation system 8 years ago
app-layer-dnp3-objects.c dnp3: regenerate object decoding code 8 years ago
app-layer-dnp3-objects.h
app-layer-dnp3.c app-layer: remove has events callback - not used 8 years ago
app-layer-dnp3.h
app-layer-dns-common.c app-layer: remove has events callback - not used 8 years ago
app-layer-dns-common.h app-layer: remove has events callback - not used 8 years ago
app-layer-dns-tcp-rust.c app-layer: remove has events callback - not used 8 years ago
app-layer-dns-tcp-rust.h rust: DNS app-layer. 8 years ago
app-layer-dns-tcp.c app-layer: remove has events callback - not used 8 years ago
app-layer-dns-tcp.h
app-layer-dns-udp-rust.c app-layer: remove has events callback - not used 8 years ago
app-layer-dns-udp-rust.h rust: DNS app-layer. 8 years ago
app-layer-dns-udp.c app-layer: remove has events callback - not used 8 years ago
app-layer-dns-udp.h
app-layer-enip-common.c
app-layer-enip-common.h
app-layer-enip.c app-layer: remove has events callback - not used 8 years ago
app-layer-enip.h
app-layer-events.c app-layer: protocol change API 8 years ago
app-layer-events.h app-layer: protocol change API 8 years ago
app-layer-expectation.c app-layer-expectation: expectation system 8 years ago
app-layer-expectation.h app-layer-expectation: expectation system 8 years ago
app-layer-ftp.c app-layer: remove unused HasTxDetectState call 8 years ago
app-layer-ftp.h app-layer-ftp: add memcap for ftp 8 years ago
app-layer-htp-body.c
app-layer-htp-body.h
app-layer-htp-file.c htp: remove usused file flags 8 years ago
app-layer-htp-file.h
app-layer-htp-libhtp.c
app-layer-htp-libhtp.h
app-layer-htp-mem.c htp: destroy atomic vars 8 years ago
app-layer-htp-mem.h htp: destroy atomic vars 8 years ago
app-layer-htp-xff.c tests: update tests for app-layer changes 8 years ago
app-layer-htp-xff.h
app-layer-htp.c app-layer: remove has events callback - not used 8 years ago
app-layer-htp.h app-layer: remove unused HasTxDetectState call 8 years ago
app-layer-modbus.c app-layer: remove has events callback - not used 8 years ago
app-layer-modbus.h
app-layer-nbss.h
app-layer-nfs-tcp.c app-layer: remove has events callback - not used 8 years ago
app-layer-nfs-tcp.h rust/nfs: implement events 8 years ago
app-layer-nfs-udp.c app-layer: remove has events callback - not used 8 years ago
app-layer-nfs-udp.h nfs: rename nfs3 to nfs 8 years ago
app-layer-ntp.c rust/ntp: convert parser to new registration method 8 years ago
app-layer-ntp.h Add NTP parser (rust-experimental) 8 years ago
app-layer-parser.c app-layer: remove has events callback - not used 8 years ago
app-layer-parser.h app-layer: remove has events callback - not used 8 years ago
app-layer-protos.c rust/tftp: eve logging with rust 8 years ago
app-layer-protos.h rust/tftp: add tftp parsing and logging 8 years ago
app-layer-register.c app-layer: remove has events callback - not used 8 years ago
app-layer-register.h app-layer: remove has events callback - not used 8 years ago
app-layer-smb-tcp-rust.c rust/smb: initial support 7 years ago
app-layer-smb-tcp-rust.h rust/smb: initial support 7 years ago
app-layer-smb.c rust/smb: initial support 7 years ago
app-layer-smb.h rust/smb: initial support 7 years ago
app-layer-smb2.c
app-layer-smb2.h
app-layer-smtp.c app-layer: remove unused HasTxDetectState call 8 years ago
app-layer-smtp.h smtp: implement DetectFlags API 8 years ago
app-layer-ssh.c app-layer: remove unused HasTxDetectState call 8 years ago
app-layer-ssh.h ssh: implement DetectFlags API 8 years ago
app-layer-ssl.c app-layer: remove has events callback - not used 8 years ago
app-layer-ssl.h ssl/tls: use DetectFlags API 8 years ago
app-layer-template.c app-layer: remove has events callback - not used 8 years ago
app-layer-template.h
app-layer-tftp.c app-layer: remove has events callback - not used 8 years ago
app-layer-tftp.h rust/tftp: add tftp parsing and logging 8 years ago
app-layer-tls-handshake.c der: fix recursion depth not being handled correctly 8 years ago
app-layer-tls-handshake.h
app-layer.c htp: allow HTTP pickup of response data 8 years ago
app-layer.h
conf-yaml-loader.c conf/yaml: don't allow empty key values 8 years ago
conf-yaml-loader.h
conf.c conf: new function: ConfNodeHasChildren 8 years ago
conf.h conf: new function: ConfNodeHasChildren 8 years ago
counters.c signal: use centralized pthread_sigmask for signals 8 years ago
counters.h
debug.h
decode-afl.c cleanup: remove all uint use 8 years ago
decode-erspan.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-erspan.h
decode-ethernet.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-ethernet.h decoder: implement IEEE802.1AH 8 years ago
decode-events.c stream: set event for suspected data injection during 3whs 8 years ago
decode-events.h stream: set event for suspected data injection during 3whs 8 years ago
decode-gre.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-gre.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-icmpv4.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-icmpv4.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-icmpv6.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-icmpv6.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-ipv4.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-ipv4.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-ipv6.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-ipv6.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-mpls.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-mpls.h
decode-null.c
decode-null.h
decode-ppp.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-ppp.h
decode-pppoe.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-pppoe.h
decode-raw.c
decode-raw.h
decode-sctp.c
decode-sctp.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-sll.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-sll.h
decode-tcp.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-tcp.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-template.c
decode-template.h
decode-teredo.c decode: add config option to disable teredo 8 years ago
decode-teredo.h decode: add config option to disable teredo 8 years ago
decode-udp.c
decode-udp.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-vlan.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode-vlan.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
decode.c cuda: remove 8 years ago
decode.h detect/prefilter: redo profiling 8 years ago
defrag-config.c
defrag-config.h
defrag-hash.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
defrag-hash.h defrag: get/set memcap value 8 years ago
defrag-queue.c
defrag-queue.h
defrag-timeout.c
defrag-timeout.h
defrag.c
defrag.h
detect-ack.c detect/prefilter: add de_ctx to registration 8 years ago
detect-ack.h
detect-app-layer-event.c detect: set events in inspection phase 8 years ago
detect-app-layer-event.h detect: set events in inspection phase 8 years ago
detect-app-layer-protocol.c detect/prefilter: add de_ctx to registration 8 years ago
detect-app-layer-protocol.h
detect-asn1.c detect-asn1: fix memory leak in error path 8 years ago
detect-asn1.h
detect-base64-data.c detect/content: pass START/END flags to inspection 8 years ago
detect-base64-data.h
detect-base64-decode.c
detect-base64-decode.h
detect-bsize.c detect: bsize keyword 8 years ago
detect-bsize.h detect: bsize keyword 8 years ago
detect-bypass.c
detect-bypass.h
detect-byte-extract.c detect: register dynamic buffers into de_ctx 8 years ago
detect-byte-extract.h
detect-bytejump.c content inspection: support transforms 8 years ago
detect-bytejump.h
detect-bytetest.c content inspection: support transforms 8 years ago
detect-bytetest.h
detect-cipservice.c
detect-cipservice.h
detect-classtype.c rule-parser: detect duplicate classtype keyword 8 years ago
detect-classtype.h
detect-content.c detect: register dynamic buffers into de_ctx 8 years ago
detect-content.h detect/content: introduce startswith modifier 8 years ago
detect-csum.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
detect-csum.h
detect-dce-iface.c rust/smb: initial support 7 years ago
detect-dce-iface.h
detect-dce-opnum.c rust/smb: initial support 7 years ago
detect-dce-opnum.h
detect-dce-stub-data.c rust/smb: initial support 7 years ago
detect-dce-stub-data.h
detect-depth.c detect/content: introduce startswith modifier 8 years ago
detect-depth.h
detect-detection-filter.c
detect-detection-filter.h
detect-distance.c
detect-distance.h
detect-dnp3.c detect/content: pass START/END flags to inspection 8 years ago
detect-dnp3.h
detect-dns-query.c detect/content: pass START/END flags to inspection 8 years ago
detect-dns-query.h
detect-dsize.c detect/prefilter: add de_ctx to registration 8 years ago
detect-dsize.h detect: reject dsize rules that can't match 8 years ago
detect-engine-address-ipv4.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
detect-engine-address-ipv4.h
detect-engine-address-ipv6.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
detect-engine-address-ipv6.h
detect-engine-address.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
detect-engine-address.h detect: constify address match functions 8 years ago
detect-engine-alert.c detect: fix mix of pass and noalert 8 years ago
detect-engine-alert.h
detect-engine-analyzer.c rule analyzer: simple rules to json dumper 8 years ago
detect-engine-analyzer.h rule analyzer: simple rules to json dumper 8 years ago
detect-engine-build.c rule analyzer: simple rules to json dumper 8 years ago
detect-engine-build.h detect: rewrite of the detect engine 8 years ago
detect-engine-content-inspection.c detect: bsize keyword 8 years ago
detect-engine-content-inspection.h detect/content: pass START/END flags to inspection 8 years ago
detect-engine-dcepayload.c
detect-engine-dcepayload.h
detect-engine-dns.c detect/dns_query: move to API v2. Supports transforms. 8 years ago
detect-engine-dns.h detect/dns_query: move to API v2. Supports transforms. 8 years ago
detect-engine-enip.c
detect-engine-enip.h
detect-engine-event.c
detect-engine-event.h
detect-engine-file.c detect/file: cleanups 8 years ago
detect-engine-file.h detect/file: cleanups 8 years ago
detect-engine-filedata.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-filedata.h file_data: update to API v2 8 years ago
detect-engine-hcbd.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hcbd.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-hcd.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hcd.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-hhhd.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hhhd.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-hmd.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hmd.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-hrhd.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hrhd.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-hrhhd.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hrhhd.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-hrud.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hrud.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-hsbd.c file_data: update to API v2 8 years ago
detect-engine-hsbd.h file_data: update to API v2 8 years ago
detect-engine-hscd.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hscd.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-hsmd.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hsmd.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-hua.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-hua.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-iponly.c detect: rewrite of the detect engine 8 years ago
detect-engine-iponly.h detect: rewrite of the detect engine 8 years ago
detect-engine-loader.c detect: move buffer type map into detect ctx 8 years ago
detect-engine-loader.h
detect-engine-modbus.c
detect-engine-modbus.h
detect-engine-mpm.c detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-mpm.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-payload.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-payload.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-port.c detect/prefilter: move hash into detect engine ctx 8 years ago
detect-engine-port.h detect/prefilter: move hash into detect engine ctx 8 years ago
detect-engine-prefilter-common.c detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-prefilter-common.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-prefilter.c detect/prefilter: move hash into detect engine ctx 8 years ago
detect-engine-prefilter.h detect/prefilter: move hash into detect engine ctx 8 years ago
detect-engine-profile.c output/json: update callers to use explicit directions 8 years ago
detect-engine-profile.h detect: rewrite of the detect engine 8 years ago
detect-engine-proto.c
detect-engine-proto.h
detect-engine-register.c rust/smb: initial support 7 years ago
detect-engine-register.h rust/smb: initial support 7 years ago
detect-engine-siggroup.c detect/prefilter: move hash into detect engine ctx 8 years ago
detect-engine-siggroup.h detect/prefilter: move hash into detect engine ctx 8 years ago
detect-engine-sigorder.c
detect-engine-sigorder.h
detect-engine-state.c app-layer: remove unused HasTxDetectState call 8 years ago
detect-engine-state.h detect/state: clean up old code 8 years ago
detect-engine-tag.c
detect-engine-tag.h
detect-engine-threshold.c threshold: minor cleanups 8 years ago
detect-engine-threshold.h rate_filter by_both through IPPair storage 8 years ago
detect-engine-tls.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-tls.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine-uri.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine-uri.h detect/prefilter: add de_ctx to registration 8 years ago
detect-engine.c detect/content: pass START/END flags to inspection 8 years ago
detect-engine.h detect: move buffer type map into detect ctx 8 years ago
detect-fast-pattern.c detect: register dynamic buffers into de_ctx 8 years ago
detect-fast-pattern.h detect: move buffer type map into detect ctx 8 years ago
detect-file-data.c rust/smb: initial support 7 years ago
detect-file-data.h
detect-file-hash-common.c detect/file: cleanups 8 years ago
detect-file-hash-common.h
detect-fileext.c detect/file: cleanups 8 years ago
detect-fileext.h
detect-filemagic.c docs: replace redmine links and enforce https on oisf urls 8 years ago
detect-filemagic.h
detect-filemd5.c
detect-filemd5.h
detect-filename.c rust/smb: initial support 7 years ago
detect-filename.h
detect-filesha1.c
detect-filesha1.h
detect-filesha256.c
detect-filesha256.h
detect-filesize.c keyword-filesize: add units 8 years ago
detect-filesize.h
detect-filestore.c file: clarify file store id name 8 years ago
detect-filestore.h
detect-flags.c detect/prefilter: add de_ctx to registration 8 years ago
detect-flags.h
detect-flow.c detect: set implied flow direction based on keywords 8 years ago
detect-flow.h detect: set implied flow direction based on keywords 8 years ago
detect-flowbits.c detect: register dynamic buffers into de_ctx 8 years ago
detect-flowbits.h
detect-flowint.c detect/flowint: harden code 8 years ago
detect-flowint.h
detect-flowvar.c
detect-flowvar.h
detect-fragbits.c detect/prefilter: add de_ctx to registration 8 years ago
detect-fragbits.h
detect-fragoffset.c detect/prefilter: add de_ctx to registration 8 years ago
detect-fragoffset.h
detect-ftpbounce.c detect-ftpdata: match on ftp-data operation 8 years ago
detect-ftpbounce.h
detect-ftpdata.c detect-ftpdata: match on ftp-data operation 8 years ago
detect-ftpdata.h detect-ftpdata: match on ftp-data operation 8 years ago
detect-geoip.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
detect-geoip.h
detect-gid.c
detect-gid.h
detect-hostbits.c hostbits: fix test setup 8 years ago
detect-hostbits.h
detect-http-accept-enc.c doc: fix doc links for http keywords 8 years ago
detect-http-accept-enc.h
detect-http-accept-lang.c doc: fix doc links for http keywords 8 years ago
detect-http-accept-lang.h
detect-http-accept.c doc: fix doc links for http keywords 8 years ago
detect-http-accept.h
detect-http-client-body.c detect: rewrite of the detect engine 8 years ago
detect-http-client-body.h
detect-http-connection.c doc: fix doc links for http keywords 8 years ago
detect-http-connection.h
detect-http-content-len.c doc: fix doc links for http keywords 8 years ago
detect-http-content-len.h
detect-http-content-type.c doc: fix doc links for http keywords 8 years ago
detect-http-content-type.h
detect-http-cookie.c detect: rewrite of the detect engine 8 years ago
detect-http-cookie.h
detect-http-header-common.c cleanup: remove all uint use 8 years ago
detect-http-header-common.h
detect-http-header-names.c detect/content: pass START/END flags to inspection 8 years ago
detect-http-header-names.h
detect-http-header.c detect/content: pass START/END flags to inspection 8 years ago
detect-http-header.h
detect-http-headers-stub.h detect/content: pass START/END flags to inspection 8 years ago
detect-http-headers.c
detect-http-headers.h
detect-http-hh.c detect: rewrite of the detect engine 8 years ago
detect-http-hh.h
detect-http-hrh.c detect: rewrite of the detect engine 8 years ago
detect-http-hrh.h
detect-http-method.c detect: rewrite of the detect engine 8 years ago
detect-http-method.h
detect-http-protocol.c detect/content: pass START/END flags to inspection 8 years ago
detect-http-protocol.h
detect-http-raw-header.c detect: rewrite of the detect engine 8 years ago
detect-http-raw-header.h
detect-http-raw-uri.c detect: rewrite of the detect engine 8 years ago
detect-http-raw-uri.h
detect-http-referer.c doc: fix doc links for http keywords 8 years ago
detect-http-referer.h
detect-http-request-line.c detect/bsize: tests for http_request_line 8 years ago
detect-http-request-line.h
detect-http-response-line.c detect/content: pass START/END flags to inspection 8 years ago
detect-http-response-line.h
detect-http-server-body.c tests: update tests for app-layer changes 8 years ago
detect-http-server-body.h
detect-http-start.c detect/content: pass START/END flags to inspection 8 years ago
detect-http-start.h
detect-http-stat-code.c detect: rewrite of the detect engine 8 years ago
detect-http-stat-code.h
detect-http-stat-msg.c detect: rewrite of the detect engine 8 years ago
detect-http-stat-msg.h
detect-http-ua.c detect: rewrite of the detect engine 8 years ago
detect-http-ua.h
detect-http-uri.c detect: rewrite of the detect engine 8 years ago
detect-http-uri.h
detect-icmp-id.c detect/prefilter: add de_ctx to registration 8 years ago
detect-icmp-id.h
detect-icmp-seq.c detect/prefilter: add de_ctx to registration 8 years ago
detect-icmp-seq.h
detect-icode.c detect/prefilter: add de_ctx to registration 8 years ago
detect-icode.h
detect-id.c detect/prefilter: add de_ctx to registration 8 years ago
detect-id.h
detect-ipopts.c
detect-ipopts.h
detect-ipproto.c
detect-ipproto.h
detect-iprep.c
detect-iprep.h
detect-isdataat.c content inspection: support transforms 8 years ago
detect-isdataat.h
detect-itype.c detect/prefilter: add de_ctx to registration 8 years ago
detect-itype.h
detect-l3proto.c
detect-l3proto.h
detect-lua-extensions.c
detect-lua-extensions.h
detect-lua.c docs: replace redmine links and enforce https on oisf urls 8 years ago
detect-lua.h
detect-mark.c
detect-mark.h
detect-metadata.c metadata: fix parsing when not k/v 8 years ago
detect-metadata.h detect-metadata: add a string storage to de_ctx 8 years ago
detect-modbus.c modbus: duplicate alerts unaware of direction 8 years ago
detect-modbus.h
detect-msg.c detect-msg: cleanup error message 8 years ago
detect-msg.h
detect-nfs-procedure.c app-layer: add tx iterator API 8 years ago
detect-nfs-procedure.h nfs: rename nfs3 to nfs 8 years ago
detect-nfs-version.c app-layer: add tx iterator API 8 years ago
detect-nfs-version.h nfs: nfs_version keyword 8 years ago
detect-noalert.c
detect-noalert.h
detect-nocase.c
detect-nocase.h
detect-offset.c detect/content: introduce startswith modifier 8 years ago
detect-offset.h
detect-parse.c detect: set implied flow direction based on keywords 8 years ago
detect-parse.h detect: move buffer type map into detect ctx 8 years ago
detect-pcre.c content inspection: support transforms 8 years ago
detect-pcre.h
detect-pkt-data.c
detect-pkt-data.h
detect-pktvar.c
detect-pktvar.h
detect-prefilter.c
detect-prefilter.h
detect-priority.c
detect-priority.h
detect-rawbytes.c
detect-rawbytes.h
detect-reference.c
detect-reference.h
detect-replace.c
detect-replace.h
detect-rev.c rule-parser: detect duplicate rev keyword 8 years ago
detect-rev.h
detect-rpc.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
detect-rpc.h mingw: add SCNtohl and SCNtohs macro's 8 years ago
detect-sameip.c
detect-sameip.h
detect-seq.c detect/prefilter: add de_ctx to registration 8 years ago
detect-seq.h
detect-sid.c rule-parser: detect duplicate sid keyword 8 years ago
detect-sid.h
detect-smb-share.c rust/smb: initial support 7 years ago
detect-smb-share.h rust/smb: initial support 7 years ago
detect-ssh-proto-version.c
detect-ssh-proto-version.h
detect-ssh-proto.c detect/content: pass START/END flags to inspection 8 years ago
detect-ssh-proto.h
detect-ssh-software-version.c
detect-ssh-software-version.h
detect-ssh-software.c detect/content: pass START/END flags to inspection 8 years ago
detect-ssh-software.h
detect-ssl-state.c
detect-ssl-state.h
detect-ssl-version.c
detect-ssl-version.h
detect-stream_size.c
detect-stream_size.h
detect-tag.c
detect-tag.h
detect-target.c detect-target: introduce new keyword 8 years ago
detect-target.h detect-target: introduce new keyword 8 years ago
detect-template-buffer.c detect/content: pass START/END flags to inspection 8 years ago
detect-template-buffer.h template: minor updates 8 years ago
detect-template.c template: minor updates 8 years ago
detect-template.h template: minor updates 8 years ago
detect-threshold.c
detect-threshold.h rate_filter by_both through IPPair storage 8 years ago
detect-tls-cert-fingerprint.c detect: add (mpm) keyword tls_cert_fingerprint 8 years ago
detect-tls-cert-fingerprint.h detect: add (mpm) keyword tls_cert_fingerprint 8 years ago
detect-tls-cert-issuer.c
detect-tls-cert-issuer.h
detect-tls-cert-serial.c
detect-tls-cert-serial.h
detect-tls-cert-subject.c
detect-tls-cert-subject.h
detect-tls-cert-validity.c
detect-tls-cert-validity.h
detect-tls-sni.c
detect-tls-sni.h
detect-tls-version.c
detect-tls-version.h
detect-tls.c
detect-tls.h
detect-tos.c detect/tos: minor cleanups 8 years ago
detect-tos.h
detect-transform-compress-whitespace.c detect/transform: initial compress_whitespace implementation 8 years ago
detect-transform-compress-whitespace.h detect/transform: initial compress_whitespace implementation 8 years ago
detect-transform-sha256.c detect/transform: initial to_sha256 implementation 8 years ago
detect-transform-sha256.h detect/transform: initial to_sha256 implementation 8 years ago
detect-transform-strip-whitespace.c detect/transform: initial strip_whitespace implementation 8 years ago
detect-transform-strip-whitespace.h detect/transform: initial strip_whitespace implementation 8 years ago
detect-ttl.c detect/prefilter: add de_ctx to registration 8 years ago
detect-ttl.h
detect-uricontent.c tests: update tests for app-layer changes 8 years ago
detect-uricontent.h
detect-urilen.c detect: save invalid rules 8 years ago
detect-urilen.h detect: save invalid rules 8 years ago
detect-window.c
detect-window.h
detect-within.c
detect-within.h
detect-xbits.c
detect-xbits.h
detect.c detect: fix tx iterator logic in detect 7 years ago
detect.h file_data: update to API v2 8 years ago
device-storage.c device-storage: introduce feature 8 years ago
device-storage.h device-storage: introduce feature 8 years ago
flow-bit.c
flow-bit.h
flow-bypass.c flow-bypass: introduce update function 8 years ago
flow-bypass.h flow-bypass: introduce update function 8 years ago
flow-hash.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
flow-hash.h
flow-manager.c signal: use centralized pthread_sigmask for signals 8 years ago
flow-manager.h
flow-private.h
flow-queue.c
flow-queue.h
flow-storage.c
flow-storage.h
flow-timeout.c tests: update tests for app-layer changes 8 years ago
flow-timeout.h
flow-util.c NSM: add TTL fields for netflow log 8 years ago
flow-util.h flow: add parent_id field 8 years ago
flow-var.c detect/flowint: harden code 8 years ago
flow-var.h
flow-worker.c app-layer: improve async and out of order txs 8 years ago
flow-worker.h
flow.c flow-bypass: introduce update function 8 years ago
flow.h app-layer-expectation: expectation system 8 years ago
host-bit.c
host-bit.h
host-queue.c
host-queue.h
host-storage.c
host-storage.h
host-timeout.c rate_filter by_both through IPPair storage 8 years ago
host-timeout.h
host.c host: get/set memcap value 8 years ago
host.h host: get/set memcap value 8 years ago
ippair-bit.c
ippair-bit.h
ippair-queue.c
ippair-queue.h
ippair-storage.c
ippair-storage.h
ippair-timeout.c rate_filter by_both through IPPair storage 8 years ago
ippair-timeout.h
ippair.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
ippair.h ippair: get/set memcap value 8 years ago
log-cf-common.c
log-cf-common.h
log-dnslog.c output: introduce init return type 8 years ago
log-dnslog.h
log-droplog.c output: introduce init return type 8 years ago
log-droplog.h
log-file.c output: introduce init return type 8 years ago
log-file.h
log-filestore.c filestore: only allow one filestore to be enabled 8 years ago
log-filestore.h filestore: avoid open write close sequence 8 years ago
log-httplog.c output: introduce init return type 8 years ago
log-httplog.h output: introduce init return type 8 years ago
log-pcap.c output: introduce init return type 8 years ago
log-pcap.h
log-stats.c output: introduce init return type 8 years ago
log-stats.h
log-tcp-data.c output: introduce init return type 8 years ago
log-tcp-data.h output: introduce init return type 8 years ago
log-tlslog.c output: introduce init return type 8 years ago
log-tlslog.h
log-tlsstore.c output: introduce init return type 8 years ago
log-tlsstore.h
output-file.c output/file: run file loggers in both directions 8 years ago
output-file.h
output-filedata.c output/filedata: call loggers on both directions 8 years ago
output-filedata.h filestore: avoid open write close sequence 8 years ago
output-filestore.c filestore: minor cleanups and warning fixes 8 years ago
output-filestore.h filestore v2 - initial version 8 years ago
output-flow.c
output-flow.h
output-json-alert.c rust/smb: initial support 7 years ago
output-json-alert.h output-json-alert: conditionaly output metadata 8 years ago
output-json-dnp3-objects.c
output-json-dnp3-objects.h
output-json-dnp3.c output/json: update callers to use explicit directions 8 years ago
output-json-dnp3.h
output-json-dns.c output/json: update callers to use explicit directions 8 years ago
output-json-dns.h
output-json-drop.c output/json: update callers to use explicit directions 8 years ago
output-json-drop.h
output-json-email-common.c
output-json-email-common.h eve: email: respect global metadata config 8 years ago
output-json-file.c output/json: update callers to use explicit directions 8 years ago
output-json-file.h output-json-file: let caller decide if file is stored 8 years ago
output-json-flow.c output/json: clean up CreateJSONHeader calls 8 years ago
output-json-flow.h output-json-alert: add app_proto or flow to events 8 years ago
output-json-http.c output/json: update callers to use explicit directions 8 years ago
output-json-http.h output-json-http: add functions to log http body 8 years ago
output-json-metadata.c output/json: update callers to use explicit directions 8 years ago
output-json-metadata.h output-json-vars: rename to metadata 8 years ago
output-json-netflow.c output/json: clean up CreateJSONHeader calls 8 years ago
output-json-netflow.h
output-json-nfs.c output/json: update callers to use explicit directions 8 years ago
output-json-nfs.h nfs: add to fileinfo events 8 years ago
output-json-smb.c rust/smb: initial support 7 years ago
output-json-smb.h rust/smb: initial support 7 years ago
output-json-smtp.c output/json: update callers to use explicit directions 8 years ago
output-json-smtp.h
output-json-ssh.c output/json: update callers to use explicit directions 8 years ago
output-json-ssh.h
output-json-stats.c output: introduce init return type 8 years ago
output-json-stats.h json-stats: print engine stats 8 years ago
output-json-template.c output/json: update callers to use explicit directions 8 years ago
output-json-template.h
output-json-tftp.c output/json: update callers to use explicit directions 8 years ago
output-json-tftp.h rust/tftp: add tftp parsing and logging 8 years ago
output-json-tls.c output/json: update callers to use explicit directions 8 years ago
output-json-tls.h
output-json.c eve: log pcap filename 7 years ago
output-json.h output/json: make log direction explicit 8 years ago
output-lua.c output/lua: better lua output setup error handling 7 years ago
output-lua.h
output-packet.c
output-packet.h
output-stats.c
output-stats.h
output-streaming.c output/streaming: fixes and redo tcp logging 8 years ago
output-streaming.h
output-tx.c app-layer: add tx iterator API 8 years ago
output-tx.h
output.c rust/smb: initial support 7 years ago
output.h output: introduce init return type 8 years ago
packet-queue.c
packet-queue.h
pkt-var.c
pkt-var.h
queue.h
reputation.c
reputation.h
respond-reject-libnet11.c
respond-reject-libnet11.h
respond-reject.c
respond-reject.h
runmode-af-packet.c af-packet: XDP bypass in IPS mode 8 years ago
runmode-af-packet.h
runmode-erf-dag.c
runmode-erf-dag.h
runmode-erf-file.c gcc7: fix format-truncation warnings in runmodes 8 years ago
runmode-erf-file.h
runmode-ipfw.c
runmode-ipfw.h
runmode-napatech.c napatech: fix minor memleak in error path 8 years ago
runmode-napatech.h napatech: Implementation of packet counters 8 years ago
runmode-netmap.c output: introduce init return type 8 years ago
runmode-netmap.h
runmode-nflog.c
runmode-nflog.h
runmode-nfq.c
runmode-nfq.h
runmode-pcap-file.c gcc7: fix format-truncation warnings in runmodes 8 years ago
runmode-pcap-file.h
runmode-pcap.c output: introduce init return type 8 years ago
runmode-pcap.h
runmode-pfring.c pfring: various build issues 8 years ago
runmode-pfring.h
runmode-tile.c
runmode-tile.h
runmode-unittests.c cuda: remove 8 years ago
runmode-unittests.h gcc7: fixes for format string warnings 8 years ago
runmode-unix-socket.c source-pcap-file: Directory mode may miss files (bug #2394) 8 years ago
runmode-unix-socket.h runmode-unix-socket: add commands for memcap handling 8 years ago
runmodes.c flow-bypass: only start thread on demand 8 years ago
runmodes.h flow-bypass: only start thread on demand 8 years ago
rust.h rust/smb: initial support 7 years ago
source-af-packet.c af-packet: count only CPUs once 8 years ago
source-af-packet.h af-packet: end of map factoring 8 years ago
source-erf-dag.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
source-erf-dag.h
source-erf-file.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
source-erf-file.h
source-ipfw.c util-device: change logic of registration 8 years ago
source-ipfw.h
source-mpipe.c
source-mpipe.h
source-napatech.c napatech: Implementation of packet counters 8 years ago
source-napatech.h napatech: Implementation of packet counters 8 years ago
source-netmap.c cuda: remove 8 years ago
source-netmap.h
source-nflog.c nflog: compiler warning fix 8 years ago
source-nflog.h
source-nfq-prototypes.h
source-nfq.c util-device: change logic of registration 8 years ago
source-nfq.h nfq: remove obsolete and broken netfilterforwin support 8 years ago
source-pcap-file-directory-helper.c eve: log pcap filename 7 years ago
source-pcap-file-directory-helper.h source-pcap-file: Directory mode may miss files (bug #2394) 8 years ago
source-pcap-file-helper.c eve: log pcap filename 7 years ago
source-pcap-file-helper.h source-pcap-file: Pcap Directory Mode (Feature #2222) 8 years ago
source-pcap-file.c source-pcap-file: Directory mode may miss files (bug #2394) 8 years ago
source-pcap-file.h eve: log pcap filename 7 years ago
source-pcap.c cuda: remove 8 years ago
source-pcap.h
source-pfring.c pfring: minor code cleanups 8 years ago
source-pfring.h pfring: various build issues 8 years ago
stream-tcp-inline.c stream-tcp: use flags field to store inline info 8 years ago
stream-tcp-inline.h stream-tcp: use flags field to store inline info 8 years ago
stream-tcp-list.c stream: improve overlap detection 8 years ago
stream-tcp-list.h
stream-tcp-private.h bypass: add explicit flag in stream engine 8 years ago
stream-tcp-reassemble.c stream: inform app layer of depth reached 8 years ago
stream-tcp-reassemble.h stream-tcp: get/set memcap value 8 years ago
stream-tcp-sack.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
stream-tcp-sack.h
stream-tcp-util.c app-layer-expectation: expectation system 8 years ago
stream-tcp-util.h
stream-tcp.c output: fix logging wrong direction in tls upgrade 8 years ago
stream-tcp.h stream-tcp: get/set memcap value 8 years ago
stream.c
stream.h
suricata-common.h rust/smb: initial support 7 years ago
suricata.c mingw: fix compile error 7 years ago
suricata.h docs: replace redmine links and enforce https on oisf urls 8 years ago
threads-arch-tile.h
threads-debug.h
threads-profile.h
threads.c
threads.h
threadvars.h stats: use unshortened interface names in counters 8 years ago
tm-modules.c af-packet: kernel bypass implementation 8 years ago
tm-modules.h
tm-queuehandlers.c
tm-queuehandlers.h
tm-queues.c cuda: remove 8 years ago
tm-queues.h cuda: remove 8 years ago
tm-threads-common.h af-packet: kernel bypass implementation 8 years ago
tm-threads.c tm-threads: fix build warning in afl mode 8 years ago
tm-threads.h
tmqh-flow.c
tmqh-flow.h
tmqh-nfq.c
tmqh-nfq.h
tmqh-packetpool.c hosts: release packet references to hosts 8 years ago
tmqh-packetpool.h
tmqh-simple.c cuda: remove 8 years ago
tmqh-simple.h cuda: remove 8 years ago
unix-manager.c unix-socket: add ebpf-bypassed-stats command 8 years ago
unix-manager.h bug 2113: unix-socket start up race 8 years ago
util-action.c
util-action.h
util-affinity.c util-affinity: export CPU set parsing function 8 years ago
util-affinity.h util-affinity: export CPU set parsing function 8 years ago
util-atomic.c
util-atomic.h
util-base64.c
util-base64.h
util-binsearch.c
util-binsearch.h
util-bloomfilter-counting.c
util-bloomfilter-counting.h
util-bloomfilter.c
util-bloomfilter.h
util-buffer.c
util-buffer.h af-packet: add support for eBPF cluster and filter 8 years ago
util-byte.c
util-byte.h
util-checksum.c
util-checksum.h
util-cidr.c
util-cidr.h
util-classification-config.c
util-classification-config.h
util-clock.h
util-conf.c conf: NULL-pointer dereference in ConfUnixSocketIsEnable 8 years ago
util-conf.h
util-coredump-config.c conf: fix NULL-pointer dereference in CoredumpLoadConfig 8 years ago
util-coredump-config.h
util-cpu.c
util-cpu.h
util-crypt.c
util-crypt.h
util-daemon.c
util-daemon.h
util-debug-filters.c
util-debug-filters.h
util-debug.c console: no color for native windows build 8 years ago
util-debug.h scan-build: simplify FatalErrorOnInit macro 8 years ago
util-decode-asn1.c
util-decode-asn1.h
util-decode-der-get.c
util-decode-der-get.h
util-decode-der.c der/afl: free data during fuzzing 7 years ago
util-decode-der.h der: fix recursion depth not being handled correctly 8 years ago
util-decode-mime.c ipv6: add string validation function 8 years ago
util-decode-mime.h
util-detect.c detect: save invalid rules 8 years ago
util-detect.h detect: save invalid rules 8 years ago
util-device.c unix-socket: add bypassed counter to iface-stat 8 years ago
util-device.h util-device: change logic of registration 8 years ago
util-ebpf.c util-ebpf: rename local variable 8 years ago
util-ebpf.h unix-socket: add ebpf-bypassed-stats command 8 years ago
util-enum.c enum: don't printf on util-enum errors 8 years ago
util-enum.h
util-error.c rust/smb: initial support 7 years ago
util-error.h rust/smb: initial support 7 years ago
util-file-decompression.c flash: code cleanups 8 years ago
util-file-decompression.h file_data: update to API v2 8 years ago
util-file-swf-decompression.c flash: code cleanups 8 years ago
util-file-swf-decompression.h flash: code cleanups 8 years ago
util-file.c file: fix files not getting pruned 8 years ago
util-file.h file: use enum for state 8 years ago
util-fix_checksum.c
util-fix_checksum.h
util-fmemopen.c
util-fmemopen.h
util-hash-lookup3.c gcc7: fixes for format string warnings 8 years ago
util-hash-lookup3.h
util-hash.c Hash table: free bucker in case of insertion error 8 years ago
util-hash.h
util-hashlist.c
util-hashlist.h
util-host-info.c
util-host-info.h
util-host-os-info.c mingw: work around mingw more liberal ip parsing 8 years ago
util-host-os-info.h
util-hyperscan.c
util-hyperscan.h
util-ioctl.c
util-ioctl.h
util-ip.c ipv6: add string validation function 8 years ago
util-ip.h ipv6: add string validation function 8 years ago
util-log-redis.c redis: suppress minor coverity warning 8 years ago
util-log-redis.h
util-logopenfile-tile.c
util-logopenfile-tile.h
util-logopenfile.c create directory: final arg to control full path or prefix 8 years ago
util-logopenfile.h eve: log pcap filename 7 years ago
util-lua-common.c file: use enum for state 8 years ago
util-lua-common.h
util-lua-dnp3-objects.c
util-lua-dnp3-objects.h
util-lua-dnp3.c
util-lua-dnp3.h
util-lua-dns.c rust: lua support for DNS based Rust 8 years ago
util-lua-dns.h
util-lua-http.c
util-lua-http.h
util-lua-smtp.c
util-lua-smtp.h
util-lua-ssh.c
util-lua-ssh.h
util-lua-tls.c
util-lua-tls.h
util-lua.c luajit: cleanup states before return to pool 8 years ago
util-lua.h
util-luajit.c
util-luajit.h
util-magic.c magic: fix compile warnings 8 years ago
util-magic.h
util-mem.h scan-build: don't use memory wrappers 8 years ago
util-memcmp.c
util-memcmp.h
util-memcpy.h
util-memrchr.c
util-memrchr.h
util-misc.c conf: fix NULL-pointer dereference in ParseSizeString 8 years ago
util-misc.h
util-mpm-ac-bs.c cuda: remove 8 years ago
util-mpm-ac-bs.h
util-mpm-ac-tile-small.c
util-mpm-ac-tile.c mpm/ac-ks: apply offset/depth 8 years ago
util-mpm-ac-tile.h mpm/ac-ks: apply offset/depth 8 years ago
util-mpm-ac.c cuda: remove 8 years ago
util-mpm-ac.h cuda: remove 8 years ago
util-mpm-hs.c hyperscan: unittests compiler warning fixes 8 years ago
util-mpm-hs.h
util-mpm.c cuda: remove 8 years ago
util-mpm.h cuda: remove 8 years ago
util-napatech.c napatech: Implementation of packet counters 8 years ago
util-napatech.h napatech: Implementation of packet counters 8 years ago
util-optimize.h
util-pages.c
util-pages.h
util-path.c SCPathExists - function to see if a path exists 8 years ago
util-path.h SCPathExists - function to see if a path exists 8 years ago
util-pidfile.c mingw: disable pid checking from pidfile 8 years ago
util-pidfile.h
util-pool-thread.c
util-pool-thread.h
util-pool.c
util-pool.h
util-prefilter.c
util-prefilter.h
util-print.c print: Escape backslash in PrintRawUriFp 8 years ago
util-print.h
util-privs.c
util-privs.h
util-profiling-keywords.c detect: register dynamic buffers into de_ctx 8 years ago
util-profiling-locks.c profiling: fix const compiler warnings 8 years ago
util-profiling-locks.h
util-profiling-prefilter.c profiling: suppress debug statements 7 years ago
util-profiling-rulegroups.c
util-profiling-rules.c
util-profiling.c rust/smb: initial support 7 years ago
util-profiling.h detect/prefilter: redo profiling 8 years ago
util-proto-name.c
util-proto-name.h
util-radix-tree.c scan-build: fix warning in radix tree 8 years ago
util-radix-tree.h
util-random.c random: support getrandom(2) if available 8 years ago
util-random.h
util-reference-config.c
util-reference-config.h
util-rohash.c
util-rohash.h
util-rule-vars.c
util-rule-vars.h
util-runmodes.c output: introduce init return type 8 years ago
util-runmodes.h
util-running-modes.c cuda: remove 8 years ago
util-running-modes.h cuda: remove 8 years ago
util-signal.c signal: use centralized pthread_sigmask for signals 8 years ago
util-signal.h signal: use centralized pthread_sigmask for signals 8 years ago
util-spm-bm.c
util-spm-bm.h
util-spm-bs.c
util-spm-bs.h
util-spm-bs2bm.c
util-spm-bs2bm.h
util-spm-hs.c
util-spm-hs.h
util-spm.c
util-spm.h
util-storage.c device-storage: introduce feature 8 years ago
util-storage.h device-storage: introduce feature 8 years ago
util-streaming-buffer.c scan-build: fix warning in streaming buffer 8 years ago
util-streaming-buffer.h
util-strlcatu.c
util-strlcpyu.c
util-strptime.c strptime: add implementation from NetBSD 8 years ago
util-syslog.c
util-syslog.h
util-threshold-config.c rate_filter: by_rule fixed triggering algorithm 8 years ago
util-threshold-config.h
util-time.c time: Force init cached_minute_start array 8 years ago
util-time.h source-pcap-file: Directory mode may miss files (bug #2394) 8 years ago
util-unittest-helper.c mingw: add SCNtohl and SCNtohs macro's 8 years ago
util-unittest-helper.h unittest/helpers: add helper to assign flow to packet 8 years ago
util-unittest.c
util-unittest.h
util-validate.h
util-var-name.c flowbits: analyze and dump to json 8 years ago
util-var-name.h flowbits: analyze and dump to json 8 years ago
util-var.c
util-var.h
util-vector.h
win32-misc.c mingw: improve ipaddress parsing 8 years ago
win32-misc.h
win32-service.c mingw: service init compile warning fix 8 years ago
win32-service.h
win32-syslog.h