Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.
You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 
 
 
 
Go to file
Anoop Saldanha d0c5f51293 Update rule engine relationship with regard to setting ip protocol between specifying protocol after action, ip_proto and app-layer-protocol.
Now we can specify alproto, ip_proto combinations this way

alert dns (ip_proto:[tcp/udp];)
alert ip (app-layer-protocol:dns;)
alert ip (app-layer-protocol:dns; ip_proto:tcp;)
alert tcp (app-layer-protocol:dns:)

so on.  Neater than using dnstcp/dnsudp.

This is related to feature #424.
13 years ago
benches
contrib Add one shot run option to suri-graphite. 13 years ago
doc Update docs from wiki 14 years ago
m4
qa Add DrMemory suppress file 13 years ago
rules Add decoder event rule for tls event "invalid_ssl_record", which will now be available "app-layer-event:tls.invalid_ssl_record". 13 years ago
scripts suricatasc: fix make distcheck. 13 years ago
src Update rule engine relationship with regard to setting ip protocol between specifying protocol after action, ip_proto and app-layer-protocol. 13 years ago
.gitignore unittest: make check use a qa/log dir for logging 13 years ago
COPYING
ChangeLog Update changelog for 2.0beta1 13 years ago
LICENSE
Makefile.am Use wget or curl to download ruleset. 13 years ago
Makefile.cvs
acsite.m4
autogen.sh OpenBSD 5.2 build fixes, Unit test fix. 14 years ago
classification.config
config.rpath Add file needed for some autotools version. 13 years ago
configure.ac pcre: check for pcre_free_study, fall back to pcre_free if it unavailable 13 years ago
doxygen.cfg Adding an updated doxygen config file, because the old one was created a couple major versions ago. 13 years ago
mkinstalldirs
reference.config
suricata.yaml.in Allow detection ports for alproto to be specified via the conf file. 13 years ago
threshold.config threshold: improve comments of shipped threshold.config, add links to wiki. 14 years ago