Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.
You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 
 
 
 
Go to file
Victor Julien 1d18155a16 XFF: use per alert tx id
Use the tx id stored for each alert to find the correct XFF address
to add to the extra-data field.

In overwrite mode we still only grab the first available XFF addr,
as this address is set in the header preceeding the individual alerts.

Issue #904.
12 years ago
benches
contrib
doc
m4
qa coccinelle: implement parallel check 12 years ago
rules http: add new events for invalid host header and host part of uri 12 years ago
scripts
src XFF: use per alert tx id 12 years ago
.gitignore unittest: make check use a qa/log dir for logging 12 years ago
COPYING
ChangeLog
LICENSE
Makefile.am Use wget or curl to download ruleset. 12 years ago
Makefile.cvs
acsite.m4
autogen.sh
classification.config
config.rpath
configure.ac configure: accept libnet 1.1 and 1.2. 12 years ago
doxygen.cfg
mkinstalldirs
reference.config
suricata.yaml.in log: change default log level to notice 12 years ago
threshold.config