-
Notifications
You must be signed in to change notification settings - Fork 1.5k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Detect generic uint 4112 v7 #7305
Conversation
Ticket: 4112 Move it away from http2 to generic core crate. And use it for DCERPC (and SMB) And remove the C version. Main change in API is the free function is not free itself, but a rust wrapper around unbox.
Ticket: 4112
Ticket: 4112
Ticket: 4112
Codecov Report
@@ Coverage Diff @@
## master #7305 +/- ##
==========================================
- Coverage 75.82% 75.69% -0.14%
==========================================
Files 656 654 -2
Lines 190051 189055 -996
==========================================
- Hits 144102 143101 -1001
- Misses 45949 45954 +5
Flags with carried forward coverage won't be shown. Click here to find out more. |
Minor nit: Our current convention, at least by looking at |
@victorjulien What is the right format ? |
Ticket: 4112 Ticket: 2697 By the way, adds the prefilter feature
8f96d9a
to
9fa86a4
Compare
ERROR: ERROR: QA failed on tlpr1_asan_cfg. Pipeline 7171 |
Needs investigation of the qalab failures |
Not documented yet, but here is the regex from the new check-ticket script
|
Ok, is there a difference between the different wordings ? |
@pevma @ct0br0 it looks like old rules are still used in the QA :
Could you fix this ? |
Yes.I have open an internal ticket to investigate. |
Replaced by #7357 |
The encryption key subfield of the media description field is not logged when it should be. Ticket OISF#7305
The encryption key subfield of the media description field is not logged when it should be. Ticket OISF#7305
Link to redmine ticket:
https://redmine.openinfosecfoundation.org/issues/4112
https://redmine.openinfosecfoundation.org/issues/2697
Describe changes:
DetectUint
structure fordsize
anddcerpc
,ttl
,tcpmss
,filesize
,streamsize
(and template2)Replaces #7302 with stream size addition
Further work, but this PR can already be merged:
set_uint
in loggers to see if we can easily a new keywordssuricata-verify-pr: 809