mirror of https://github.com/OISF/suricata
rust/dns/tcp - probe even if payload is short
As the DNS probe just uses the query portion of a response, don't require there to be as many bytes as specified in the TCP DNS header. This can occur in large responses where probe is called without all the data. Fixes the cases where the app proto is recorded as failed. Fixes issue: https://redmine.openinfosecfoundation.org/issues/2169pull/2838/head
parent
74f4f6dd63
commit
3063851d85
Loading…
Reference in New Issue