Philippe Antoine
							
						 
						
							 
							
							
							
								
							
								8f9cd8ff1a 
								
							
								 
							
						 
						
							
							
								
								doc: security.limit-noproc upgrade note  
							
							 
							
							... 
							
							
							
							Ticket: #5621  
							
						 
						
							3 years ago  
						
					 
				
					
						
							
							
								 
								Victor Julien
							
						 
						
							 
							
							
							
								
							
								f4fa51986e 
								
							
								 
							
						 
						
							
							
								
								doc: warn IPS users on new exception policy default  
							
							 
							
							
							
						 
						
							3 years ago  
						
					 
				
					
						
							
							
								 
								Juliana Fajardini
							
						 
						
							 
							
							
							
								
							
								0d9289014b 
								
							
								 
							
						 
						
							
							
								
								exceptions: add master switch config option  
							
							 
							
							... 
							
							
							
							This allows all traffic Exception Policies to be set from one
configuration point. All exception policy options are available in IPS
mode. Bypass, pass and auto (disabled) are also available in iDS mode
Exception Policies set up individually will overwrite this setup for the
given traffic exception.
Task #5219  
							
						 
						
							3 years ago  
						
					 
				
					
						
							
							
								 
								Todd Mortimer
							
						 
						
							 
							
							
							
								
							
								15c77be937 
								
							
								 
							
						 
						
							
							
								
								swf-decompression: Disable by default.  
							
							 
							
							... 
							
							
							
							Add an entry to the upgrade guide noting the change.
Ticket: #5632  
							
						 
						
							3 years ago  
						
					 
				
					
						
							
							
								 
								Philippe Antoine
							
						 
						
							 
							
							
							
								
							
								a003640ecf 
								
							
								 
							
						 
						
							
							
								
								security: prevents process creation  
							
							 
							
							... 
							
							
							
							with setrlimit NPROC.
So that, if Suricata wants to execve or such to create a new process
the OS will forbid it so that RCE exploits are more painful to write.
Ticket: #5373  
							
						 
						
							3 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								6ceeb08351 
								
							
								 
							
						 
						
							
							
								
								doc/userguide: updates for eve dns v1 removal  
							
							 
							
							... 
							
							
							
							Ticket: #4157  
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								7d6bc60abb 
								
							
								 
							
						 
						
							
							
								
								doc/userguide: document ftp max-line-length  
							
							 
							
							
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Philippe Antoine
							
						 
						
							 
							
							
							
								
							
								cfcade58ad 
								
							
								 
							
						 
						
							
							
								
								http: move xff logging to alert object  
							
							 
							
							... 
							
							
							
							Ticket: 4860
instead of root field 
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								cda11b8d97 
								
							
								 
							
						 
						
							
							
								
								doc/update: mention change of default rule path  
							
							 
							
							
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Juliana Fajardini
							
						 
						
							 
							
							
							
								
							
								de0ce26e3f 
								
							
								 
							
						 
						
							
							
								
								userguide: update references to Suricata website  
							
							 
							
							... 
							
							
							
							Many places were still referencing the old Suricata page.
Used git grep with replace to update them. Checked that new links work.
Left old references when they were only documentation examples (for
output or unittests).
Task#4915 
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Philippe Antoine
							
						 
						
							 
							
							
							
								
							
								27dd0c6b3d 
								
							
								 
							
						 
						
							
							
								
								eve/ftp-data: log alert metadata in ftp-data object  
							
							 
							
							... 
							
							
							
							Ticket: 4860
instead of directly in root 
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Philippe Antoine
							
						 
						
							 
							
							
							
								
							
								fae7389ae2 
								
							
								 
							
						 
						
							
							
								
								pcre2: document the behavioral changes  
							
							 
							
							
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								2cff811609 
								
							
								 
							
						 
						
							
							
								
								doc: remove prelude and document as removed  
							
							 
							
							
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								3e9d1e813a 
								
							
								 
							
						 
						
							
							
								
								doc/upgrade: move ike logging changes to 7.0 changes  
							
							 
							
							... 
							
							
							
							Was mistakenly put in 6.0 changes. 
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								f56634ac46 
								
							
								 
							
						 
						
							
							
								
								doc/upgrade: mention that nss is no longer required  
							
							 
							
							
							
						 
						
							4 years ago  
						
					 
				
					
						
							
							
								 
								Jeff Lucovsky
							
						 
						
							 
							
							
							
								
							
								fcd1ae3bf1 
								
							
								 
							
						 
						
							
							
								
								doc: Protocol name/case change for upgrade doc  
							
							 
							
							... 
							
							
							
							This commit adds a one-liner to the upgrade document for 7.0 stating
that protocol names/values are now builtin to Suricata and that names
and their casing may change. 
							
						 
						
							5 years ago  
						
					 
				
					
						
							
							
								 
								frank honza
							
						 
						
							 
							
							
							
								
							
								ab59ef0d79 
								
							
								 
							
						 
						
							
							
								
								ikev1: add documentation for ikev1  
							
							 
							
							
							
						 
						
							5 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								7d44e80a50 
								
							
								 
							
						 
						
							
							
								
								doc: document removal of unified2  
							
							 
							
							... 
							
							
							
							And suggest an alternate tool, Meer if compatibility with
Barnyard2 style databases is required.
Redmine ticket:
https://redmine.openinfosecfoundation.org/issues/3497  
							
						 
						
							5 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								e71f2b22fa 
								
							
								 
							
						 
						
							
							
								
								doc: add removal of individual json loggers  
							
							 
							
							... 
							
							
							
							Add link to multiple eve instances as a replacement for this
feature. 
							
						 
						
							5 years ago  
						
					 
				
					
						
							
							
								 
								Jeff Lucovsky
							
						 
						
							 
							
							
							
								
							
								06f41f608c 
								
							
								 
							
						 
						
							
							
								
								doc: Improve grammar, spelling and clarifications  
							
							 
							
							... 
							
							
							
							This commit improves the overall documentation's grammar, spelling, and
adds clarifications  where needed. 
							
						 
						
							5 years ago  
						
					 
				
					
						
							
							
								 
								Jeff Lucovsky
							
						 
						
							 
							
							
							
								
							
								b116a56a32 
								
							
								 
							
						 
						
							
							
								
								doc: Correct typos  
							
							 
							
							
							
						 
						
							5 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								8997a114cb 
								
							
								 
							
						 
						
							
							
								
								userguide: RDP now enabled by default  
							
							 
							
							... 
							
							
							
							Redmine issue:
https://redmine.openinfosecfoundation.org/issues/3255  
							
						 
						
							5 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								3eb0461abd 
								
							
								 
							
						 
						
							
							
								
								userguide: SIP now enabled by default  
							
							 
							
							... 
							
							
							
							Redmine issue:
https://redmine.openinfosecfoundation.org/issues/3256  
							
						 
						
							5 years ago  
						
					 
				
					
						
							
							
								 
								Jason Ish
							
						 
						
							 
							
							
							
								
							
								6b8320d1c0 
								
							
								 
							
						 
						
							
							
								
								doc: document file-store v1 to v2 configuration changes  
							
							 
							
							
							
						 
						
							6 years ago  
						
					 
				
					
						
							
							
								 
								Victor Julien
							
						 
						
							 
							
							
							
								
							
								1c27a99827 
								
							
								 
							
						 
						
							
							
								
								doc: add upgrade page  
							
							 
							
							
							
						 
						
							6 years ago