| .. |
|
Makefile.am
|
Windows build and other misc fixes.
|
13 years ago |
|
action-globals.h
|
Set DROP flag on a packet in addition to the REJECT flags. This makes sure we not only send a reject, but also drop the offending packet. Closes #248.
|
15 years ago |
|
alert-debuglog.c
|
free flowvar entries in flow after live rule swap. Sync flowbits entries into packet struct to be used by alert debuglog when alert debuglog is enabled
|
14 years ago |
|
alert-debuglog.h
|
GPL and Copyright header updates.
|
16 years ago |
|
alert-fastlog.c
|
OpenBSD: introduce SCLocalTime function.
|
14 years ago |
|
alert-fastlog.h
|
Add per packet profiling.
|
14 years ago |
|
alert-pcapinfo.c
|
No longer pass StreamMsg to output for alert logging, instead use the same callback code as is used for state alerts.
|
14 years ago |
|
alert-pcapinfo.h
|
Add pcap-info alert format.
|
14 years ago |
|
alert-prelude.c
|
Do not use underscored config vars internally.
|
14 years ago |
|
alert-prelude.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
alert-syslog.c
|
Set DROP flag for reject action so in addition to sending the rst, in IPS mode also drop the offending packet.
|
14 years ago |
|
alert-syslog.h
|
Add option to set the syslog level for the alerts. Minor cleanups.
|
15 years ago |
|
alert-unified2-alert.c
|
inline: fix unified2 alert direction selection
|
14 years ago |
|
alert-unified2-alert.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
app-layer-dcerpc-common.h
|
Store the first frag flag in the uuid as the pfc_flags field is overwritten. Part of fixing #206.
|
15 years ago |
|
app-layer-dcerpc-udp.c
|
Fix compiler warning.
|
14 years ago |
|
app-layer-dcerpc-udp.h
|
Fix dcerpc unittest, add comments.
|
16 years ago |
|
app-layer-dcerpc.c
|
dcerpc/smb/smb2: more robust error checking, cosmetic code updates.
|
14 years ago |
|
app-layer-dcerpc.h
|
First stab at creating a stateful detection engine.
|
16 years ago |
|
app-layer-detect-proto.c
|
Add new command line option --list-app-layer-protocols to list supported app layer protocols in sigs
|
14 years ago |
|
app-layer-detect-proto.h
|
Add new command line option --list-app-layer-protocols to list supported app layer protocols in sigs
|
14 years ago |
|
app-layer-ftp.c
|
Add new command line option --list-app-layer-protocols to list supported app layer protocols in sigs
|
14 years ago |
|
app-layer-ftp.h
|
Many small performance updates.
|
15 years ago |
|
app-layer-htp-body.c
|
http: body inspection improvement
|
14 years ago |
|
app-layer-htp-body.h
|
File carving -- enable reponse file extraction
|
14 years ago |
|
app-layer-htp-file.c
|
filemd5: add support code for md5 handling for signatures.
|
14 years ago |
|
app-layer-htp-file.h
|
file extract: split toserver and toclient tracking
|
14 years ago |
|
app-layer-htp.c
|
http: after path double decoding, also normalize the path again. #504.
|
13 years ago |
|
app-layer-htp.h
|
file inspection: improve logging when stream.depth limit is reached. #493.
|
14 years ago |
|
app-layer-nbss.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
app-layer-parser.c
|
coverity fixes
|
14 years ago |
|
app-layer-parser.h
|
Add new command line option --list-app-layer-protocols to list supported app layer protocols in sigs
|
14 years ago |
|
app-layer-protos.c
|
Add per app layer parser profiling
|
14 years ago |
|
app-layer-protos.h
|
probing parser updated to always accept u32 buflens. Update all probing parser functions to accomodate this change
|
14 years ago |
|
app-layer-smb.c
|
dcerpc/smb/smb2: more robust error checking, cosmetic code updates.
|
14 years ago |
|
app-layer-smb.h
|
Many small performance updates.
|
15 years ago |
|
app-layer-smb2.c
|
dcerpc/smb/smb2: more robust error checking, cosmetic code updates.
|
14 years ago |
|
app-layer-smb2.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
app-layer-smtp.c
|
Add new command line option --list-app-layer-protocols to list supported app layer protocols in sigs
|
14 years ago |
|
app-layer-smtp.h
|
Support for smtp decoder events
|
14 years ago |
|
app-layer-ssh.c
|
Add new command line option --list-app-layer-protocols to list supported app layer protocols in sigs
|
14 years ago |
|
app-layer-ssh.h
|
Many small performance updates.
|
15 years ago |
|
app-layer-ssl.c
|
tls: debug compilation fixes, new tls decoder rule for tls.error_message_encountered event.
|
14 years ago |
|
app-layer-ssl.h
|
ssl connection error message event added. Remove warning log for the same error alert
|
14 years ago |
|
app-layer-tls-handshake.c
|
ssl parser fix/updates
|
14 years ago |
|
app-layer-tls-handshake.h
|
ssl parser fix/updates
|
14 years ago |
|
app-layer.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
app-layer.h
|
Disable unused code, fix compiler warning.
|
15 years ago |
|
conf-yaml-loader.c
|
Add line number to warning about mangled yaml parameters. Limit number of warnings to 10.
|
14 years ago |
|
conf-yaml-loader.h
|
define a new conf paramter detect-engine:inspection-recursion-limit; Defines a recursion limit for content inspection code
|
15 years ago |
|
conf.c
|
conf api: remove dead code
|
13 years ago |
|
conf.h
|
Allow other yaml files to be included in the main yaml.
|
14 years ago |
|
counters.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
counters.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
cuda-packet-batcher.c
|
sc_atomic_cas replaced with sc_atomic_set
|
14 years ago |
|
cuda-packet-batcher.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
cuda-ptxdump.h
|
Add missing cuda header file causing 'make distcheck' to fail.
|
14 years ago |
|
data-queue.c
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
data-queue.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
debug.h
|
GPL and Copyright header updates.
|
16 years ago |
|
decode-ethernet.c
|
doc: add decode group and related documentation.
|
14 years ago |
|
decode-ethernet.h
|
GPL and Copyright header updates.
|
16 years ago |
|
decode-events.c
|
Fix bug in app layer event handling causing http event rules to fail loading.
|
14 years ago |
|
decode-events.h
|
stream: improve TCP flags handling
|
13 years ago |
|
decode-gre.c
|
Fix a number of potential issues found by CLANG and cppcheck.
|
14 years ago |
|
decode-gre.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
decode-icmpv4.c
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
decode-icmpv4.h
|
csum function fixes. Improves alert accuracy. FPs on invalid-csums decoder rules fixed
|
14 years ago |
|
decode-icmpv6.c
|
icmpv6: for ICMPv6 info messages set payload ptr and length to right after 4 byte hdr.
|
14 years ago |
|
decode-icmpv6.h
|
icmpv6: for ICMPv6 info messages set payload ptr and length to right after 4 byte hdr.
|
14 years ago |
|
decode-ipv4.c
|
Set the packet protocol only if it can parsed without error
|
14 years ago |
|
decode-ipv4.h
|
csum function fixes. Improves alert accuracy. FPs on invalid-csums decoder rules fixed
|
14 years ago |
|
decode-ipv6.c
|
ipv6: fix an AH header parsing issue. Add decoder event for non-null reserved fields.
|
14 years ago |
|
decode-ipv6.h
|
ipv6: improve handling of packets with duplicate (or more) ipv6 extension headers.
|
14 years ago |
|
decode-ppp.c
|
doc: add decode group and related documentation.
|
14 years ago |
|
decode-ppp.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
decode-pppoe.c
|
Minor code cleanups fixing all GCC 4.6 compiler warnings for default, debug and unittests mode.
|
14 years ago |
|
decode-pppoe.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
decode-raw.c
|
doc: add decode group and related documentation.
|
14 years ago |
|
decode-raw.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
decode-sctp.c
|
doc: add decode group and related documentation.
|
14 years ago |
|
decode-sctp.h
|
Reduce SCTP_HEADER_LEN to reflect actual pkt header size.
|
15 years ago |
|
decode-sll.c
|
doc: add decode group and related documentation.
|
14 years ago |
|
decode-sll.h
|
GPL and Copyright header updates.
|
16 years ago |
|
decode-tcp.c
|
Small optimizations to IPV4 and TCP header parsing.
|
14 years ago |
|
decode-tcp.h
|
csum function fixes. Improves alert accuracy. FPs on invalid-csums decoder rules fixed
|
14 years ago |
|
decode-udp.c
|
doc: add decode group and related documentation.
|
14 years ago |
|
decode-udp.h
|
coverity fixes
|
14 years ago |
|
decode-vlan.c
|
doc: add decode group and related documentation.
|
14 years ago |
|
decode-vlan.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
decode.c
|
Make sure all fake packets have datalink type DLT_RAW. Make sure stream end packets set pkt size.
|
14 years ago |
|
decode.h
|
free flowvar entries in flow after live rule swap. Sync flowbits entries into packet struct to be used by alert debuglog when alert debuglog is enabled
|
14 years ago |
|
defrag.c
|
defrag: use IP ID in hash
|
13 years ago |
|
defrag.h
|
Cleanup defrag engine on shutdown.
|
15 years ago |
|
detect-ack.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-ack.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-app-layer-event.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-app-layer-event.h
|
Support for app layer decoder events added + app_layer_event keyword added
|
14 years ago |
|
detect-asn1.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-asn1.h
|
ASN1 decoder and keyword implementation
|
16 years ago |
|
detect-byte-extract.c
|
byte_extract_id var now a non-global de_ctx specific var
|
14 years ago |
|
detect-byte-extract.h
|
byte_extract_id var now a non-global de_ctx specific var
|
14 years ago |
|
detect-bytejump.c
|
Minor unittest fixes to make Coverity happy.
|
14 years ago |
|
detect-bytejump.h
|
byte extract added to the engine. Detection support added for packet payload, uri and dce detection engines
|
15 years ago |
|
detect-bytetest.c
|
Minor unittest fixes to make Coverity happy.
|
14 years ago |
|
detect-bytetest.h
|
byte extract added to the engine. Detection support added for packet payload, uri and dce detection engines
|
15 years ago |
|
detect-classtype.c
|
clean classification config API
|
14 years ago |
|
detect-classtype.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-content.c
|
Minor unittest fixes to make Coverity happy.
|
14 years ago |
|
detect-content.h
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-csum.c
|
csum function fixes. Improves alert accuracy. FPs on invalid-csums decoder rules fixed
|
14 years ago |
|
detect-csum.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-dce-iface.c
|
Minor unittest fixes to make Coverity happy.
|
14 years ago |
|
detect-dce-iface.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-dce-opnum.c
|
code cleanup - replace SigMatchAppendAppLayer with SigMatchAppendSMToList
|
14 years ago |
|
detect-dce-opnum.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-dce-stub-data.c
|
code cleanup - replace SigMatchAppendAppLayer with SigMatchAppendSMToList
|
14 years ago |
|
detect-dce-stub-data.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-depth.c
|
invalidate sigs if depth > content_length
|
13 years ago |
|
detect-depth.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-detection-filter.c
|
fix detection filter unittests to reflect recent fixes
|
14 years ago |
|
detect-detection-filter.h
|
Fix detection_filter issue.
|
16 years ago |
|
detect-distance.c
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-distance.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-dsize.c
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
detect-dsize.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-engine-address-ipv4.c
|
Fix broken tests.
|
14 years ago |
|
detect-engine-address-ipv4.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-engine-address-ipv6.c
|
Fix compilation with profiling enabled. Minor unittest fixes.
|
14 years ago |
|
detect-engine-address-ipv6.h
|
Use Address structure in DetectAddress struct.
|
16 years ago |
|
detect-engine-address.c
|
Improve error reporting in case of syntax errors in the address and port vars.
|
14 years ago |
|
detect-engine-address.h
|
bug #454 - global check to see if address and port vars are properly configured
|
14 years ago |
|
detect-engine-alert.c
|
No longer pass StreamMsg to output for alert logging, instead use the same callback code as is used for state alerts.
|
14 years ago |
|
detect-engine-alert.h
|
No longer pass StreamMsg to output for alert logging, instead use the same callback code as is used for state alerts.
|
14 years ago |
|
detect-engine-analyzer.c
|
rule analyzer: make analyzer aware of http_user_agent pcre flag /V.
|
13 years ago |
|
detect-engine-analyzer.h
|
rule analyzer: fix fast pattern analyzer reporting wrong filename (same as rule analyzer).
|
13 years ago |
|
detect-engine-content-inspection.c
|
All http_http_stat_code modified patterns now are DETECT_CONTENT and not DETECT_AL_HTTP_STAT_CODE. Also remove dummy match/free functions for stat code and stat msg
|
14 years ago |
|
detect-engine-content-inspection.h
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-engine-dcepayload.c
|
Disable dce unittests that tick off clamav. #458.
|
14 years ago |
|
detect-engine-dcepayload.h
|
Move dce payload inspection to stateful detection engine.
|
16 years ago |
|
detect-engine-event.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-engine-event.h
|
stream: improve TCP flags handling
|
13 years ago |
|
detect-engine-file.c
|
filemd5: add support code for md5 handling for signatures.
|
14 years ago |
|
detect-engine-file.h
|
File carving -- enable reponse file extraction
|
14 years ago |
|
detect-engine-hcbd.c
|
file inspection: improve logging when stream.depth limit is reached. #493.
|
14 years ago |
|
detect-engine-hcbd.h
|
support splitting mpm ctxs based on direction v2
|
14 years ago |
|
detect-engine-hcd.c
|
cookie header now inspects Set-Cookie headers as well
|
14 years ago |
|
detect-engine-hcd.h
|
support splitting mpm ctxs based on direction v2
|
14 years ago |
|
detect-engine-hhd.c
|
http header won't inspect set-cookie headers. Set-cookie part of cookie keyword now. Also update the http header inspection engine
|
14 years ago |
|
detect-engine-hhd.h
|
bug 389 - support http response header inspection + fix bug with stateful inspection for sigs that would have both request/response inpection
|
14 years ago |
|
detect-engine-hmd.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-engine-hmd.h
|
support splitting mpm ctxs based on direction v2
|
14 years ago |
|
detect-engine-hrhd.c
|
http_raw_header: add some debug code.
|
14 years ago |
|
detect-engine-hrhd.h
|
support http response raw header inspection + carry out hrhd mpm on both request/response headers + add unittests for the same
|
14 years ago |
|
detect-engine-hrud.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-engine-hrud.h
|
support splitting mpm ctxs based on direction v2
|
14 years ago |
|
detect-engine-hsbd.c
|
file inspection: improve logging when stream.depth limit is reached. #493.
|
14 years ago |
|
detect-engine-hsbd.h
|
support splitting mpm ctxs based on direction v2
|
14 years ago |
|
detect-engine-hscd.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-engine-hscd.h
|
rebase commit for hscd and hsmd patches
|
14 years ago |
|
detect-engine-hsmd.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-engine-hsmd.h
|
rebase commit for hscd and hsmd patches
|
14 years ago |
|
detect-engine-hua.c
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-engine-hua.h
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-engine-iponly.c
|
Properly clean signature's ip only data.
|
14 years ago |
|
detect-engine-iponly.h
|
IP Only cleanup: make most functions static. Add error message on address parsing issues.
|
14 years ago |
|
detect-engine-mpm.c
|
Update fast_pattern engine to not use negated content as fast_pattern if we have non-negated content in the sig.
|
13 years ago |
|
detect-engine-mpm.h
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-engine-payload.c
|
tests to highlight that
|
14 years ago |
|
detect-engine-payload.h
|
Inspect the reassembled stream together with the packet payload in the same direction.
|
16 years ago |
|
detect-engine-port.c
|
Improve error reporting in case of syntax errors in the address and port vars.
|
14 years ago |
|
detect-engine-port.h
|
bug #454 - global check to see if address and port vars are properly configured
|
14 years ago |
|
detect-engine-proto.c
|
Fix parsing of tcp-pkt and tcp-stream sigs, add unittest.
|
14 years ago |
|
detect-engine-proto.h
|
feature #414 - support listing supported keywords. Remove support for dummy keywords __address__, __proto__, __port__. Remove support for recursive keyword and all references to it
|
14 years ago |
|
detect-engine-siggroup.c
|
filemd5: add support code for md5 handling for signatures.
|
14 years ago |
|
detect-engine-siggroup.h
|
filemd5: add support code for md5 handling for signatures.
|
14 years ago |
|
detect-engine-sigorder.c
|
more coverity fixes
|
14 years ago |
|
detect-engine-sigorder.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-engine-state.c
|
Simplify flow resetting on de_ctx update. Detect ctx id starts at 1. So in a flow 0 means uninitialized (thus set) and if we detect flow is not equal to detect id, we reset the sgh storage and de_state.
|
14 years ago |
|
detect-engine-state.h
|
Simplify flow resetting on de_ctx update. Detect ctx id starts at 1. So in a flow 0 means uninitialized (thus set) and if we detect flow is not equal to detect id, we reset the sgh storage and de_state.
|
14 years ago |
|
detect-engine-tag.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
detect-engine-tag.h
|
Introduce host table, make tag use it
|
14 years ago |
|
detect-engine-threshold.c
|
fix rate filters that reset the sig ctx data and handled action timeouts wrongly
|
14 years ago |
|
detect-engine-threshold.h
|
Move over src and dst thresholding to use host table. Fix a bug in threshold 'both' handling.
|
14 years ago |
|
detect-engine-uri.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-engine-uri.h
|
add pcre with U modifiers to the umatch sigmatch list. fix for bug 155
|
16 years ago |
|
detect-engine.c
|
Set thread name Suricata-Main for main thread and LiveRuleSwap for live swap thread
|
13 years ago |
|
detect-engine.h
|
update clean up of old detection engine contexts for live rule swap
|
14 years ago |
|
detect-fast-pattern.c
|
fast pattern cleanup - Remove FastPatternSupportEnabledForSigMatchList() and all it's associated structures
|
14 years ago |
|
detect-fast-pattern.h
|
fast pattern cleanup - Remove FastPatternSupportEnabledForSigMatchList() and all it's associated structures
|
14 years ago |
|
detect-file-data.c
|
disallow file_data with flow:to_server/from_client
|
14 years ago |
|
detect-file-data.h
|
file-data: create initial keyword registration.
|
14 years ago |
|
detect-fileext.c
|
file detect: improve cleanup
|
14 years ago |
|
detect-fileext.h
|
Add negation to filename and fileext, use same syntax as with content.
|
14 years ago |
|
detect-filemagic.c
|
file detect: improve cleanup
|
14 years ago |
|
detect-filemagic.h
|
File carving -- enable reponse file extraction
|
14 years ago |
|
detect-filemd5.c
|
filemd5: free hash during cleanup
|
14 years ago |
|
detect-filemd5.h
|
filemd5: implement negated matching.
|
14 years ago |
|
detect-filename.c
|
file detect: improve cleanup
|
14 years ago |
|
detect-filename.h
|
Add negation to filename and fileext, use same syntax as with content.
|
14 years ago |
|
detect-filestore.c
|
file detect: improve cleanup
|
14 years ago |
|
detect-filestore.h
|
file store: respect flowbits and other keywords
|
14 years ago |
|
detect-flags.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-flags.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-flow.c
|
allow only one flow option in a rule
|
14 years ago |
|
detect-flow.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-flowbits.c
|
variable names global vars, global no more. Moved to detection engine ctx, a place it belongs
|
14 years ago |
|
detect-flowbits.h
|
Fix for bug 204 (signature ordering with flowbit priority)
|
15 years ago |
|
detect-flowint.c
|
variable names global vars, global no more. Moved to detection engine ctx, a place it belongs
|
14 years ago |
|
detect-flowint.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-flowvar.c
|
variable names global vars, global no more. Moved to detection engine ctx, a place it belongs
|
14 years ago |
|
detect-flowvar.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-fragbits.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-fragbits.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-fragoffset.c
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
detect-fragoffset.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-ftpbounce.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-ftpbounce.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-gid.c
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-gid.h
|
detect-gid: suppress unused type
|
15 years ago |
|
detect-http-client-body.c
|
http: body inspection improvement
|
14 years ago |
|
detect-http-client-body.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-http-cookie.c
|
unittests that fail, displaying the issue that we don't inspect set-cookie headers against cookie keywords
|
14 years ago |
|
detect-http-cookie.h
|
unifying content structure - http_cookie now uses DetectContentData
|
15 years ago |
|
detect-http-header.c
|
All http_http_header modified patterns now are DETECT_CONTENT and not DETECT_AL_HTTP_HEADER
|
14 years ago |
|
detect-http-header.h
|
unifying content structure - http_header now uses DetectContentData
|
15 years ago |
|
detect-http-method.c
|
All http_http_method modified patterns now are DETECT_CONTENT and not DETECT_AL_HTTP_METHOD
|
14 years ago |
|
detect-http-method.h
|
unifying content structure - http_method now uses DetectContentData
|
15 years ago |
|
detect-http-raw-header.c
|
All http_http_raw_header modified patterns now are DETECT_CONTENT and not DETECT_AL_HTTP_RAW_HEADER
|
14 years ago |
|
detect-http-raw-header.h
|
support fast pattern for http raw header. Also support relative modifiers for http raw header
|
15 years ago |
|
detect-http-raw-uri.c
|
All http_http_raw_uri modified patterns now are DETECT_CONTENT and not DETECT_AL_HTTP_RAW_URI
|
14 years ago |
|
detect-http-raw-uri.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-http-server-body.c
|
http body inspection: force body inspection on stream eof.
|
14 years ago |
|
detect-http-server-body.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-http-stat-code.c
|
All http_http_stat_code modified patterns now are DETECT_CONTENT and not DETECT_AL_HTTP_STAT_CODE. Also remove dummy match/free functions for stat code and stat msg
|
14 years ago |
|
detect-http-stat-code.h
|
All http_http_stat_code modified patterns now are DETECT_CONTENT and not DETECT_AL_HTTP_STAT_CODE. Also remove dummy match/free functions for stat code and stat msg
|
14 years ago |
|
detect-http-stat-msg.c
|
All http_http_stat_code modified patterns now are DETECT_CONTENT and not DETECT_AL_HTTP_STAT_CODE. Also remove dummy match/free functions for stat code and stat msg
|
14 years ago |
|
detect-http-stat-msg.h
|
unifying content structure - http_stat_msg now uses DetectContentData
|
15 years ago |
|
detect-http-ua.c
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-http-ua.h
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-http-uri.c
|
All uricontent modified patterns now are DETECT_CONTENT and not DETECT_URICONTENT. Step towards unifying all content based patterns. Makes way for easier management of patterns
|
14 years ago |
|
detect-http-uri.h
|
Add support for http_uri keyword
|
16 years ago |
|
detect-icmp-id.c
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
detect-icmp-id.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-icmp-seq.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-icmp-seq.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-icode.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-icode.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-id.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-id.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-ipopts.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-ipopts.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-ipproto.c
|
Minor error message cleanups
|
14 years ago |
|
detect-ipproto.h
|
support multiple ipprotos in the same sig + unittest
|
14 years ago |
|
detect-isdataat.c
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-isdataat.h
|
byte_extract support for isdataat added
|
15 years ago |
|
detect-itype.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-itype.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-mark.c
|
code cleanup - replace SigMatchAppendTag with SigMatchAppendSMToList
|
14 years ago |
|
detect-mark.h
|
Add support for 'nfq_set_mark' keyword
|
15 years ago |
|
detect-metadata.c
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-metadata.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-msg.c
|
Another batch of clang fixes. Nothing really serious. Includes a couple of fixes for broken fixes from yesterday.
|
15 years ago |
|
detect-msg.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-noalert.c
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-noalert.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-nocase.c
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-nocase.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-offset.c
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-offset.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-parse.c
|
Only set SIG_FLAG_REQUIRE_STREAM if signature inspects TCP.
|
13 years ago |
|
detect-parse.h
|
code cleanup. Remove unused functions
|
14 years ago |
|
detect-pcre.c
|
variable names global vars, global no more. Moved to detection engine ctx, a place it belongs
|
14 years ago |
|
detect-pcre.h
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-pktvar.c
|
Improve pktvar keyword parsing and error handling.
|
14 years ago |
|
detect-pktvar.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-priority.c
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-priority.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-rawbytes.c
|
Minor error message cleanups
|
14 years ago |
|
detect-rawbytes.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-reference.c
|
clean reference config API
|
14 years ago |
|
detect-reference.h
|
Support for reference.config file
|
15 years ago |
|
detect-replace.c
|
fix replace unittets. Re-set modified global_var to orignial value when the test completes
|
14 years ago |
|
detect-replace.h
|
Add support for replace keyword.
|
14 years ago |
|
detect-rev.c
|
Use strtoul instead of strtol for sid parsing. Fixes parsing of really large sid numbers. Fixes #393.
|
14 years ago |
|
detect-rev.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-rpc.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-rpc.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-sameip.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-sameip.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-seq.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-seq.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-sid.c
|
Use strtoul instead of strtol for sid parsing. Fixes parsing of really large sid numbers. Fixes #393.
|
14 years ago |
|
detect-sid.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-ssh-proto-version.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-ssh-proto-version.h
|
Adding ssh app layer module with two new keywords: ssh.protoversion and ssh.softwareversion
|
15 years ago |
|
detect-ssh-software-version.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-ssh-software-version.h
|
Adding ssh app layer module with two new keywords: ssh.protoversion and ssh.softwareversion
|
15 years ago |
|
detect-ssl-state.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
detect-ssl-state.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-ssl-version.c
|
tls: debug compilation fixes, new tls decoder rule for tls.error_message_encountered event.
|
14 years ago |
|
detect-ssl-version.h
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
detect-stream_size.c
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
detect-stream_size.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-tag.c
|
Fix detect tag error handling.
|
14 years ago |
|
detect-tag.h
|
Introduce host table, make tag use it
|
14 years ago |
|
detect-threshold.c
|
Move over src and dst thresholding to use host table. Fix a bug in threshold 'both' handling.
|
14 years ago |
|
detect-threshold.h
|
considering the tenths of a seconds in a packet, when calculating thresholds
|
14 years ago |
|
detect-tls-version.c
|
tls: debug compilation fixes, new tls decoder rule for tls.error_message_encountered event.
|
14 years ago |
|
detect-tls-version.h
|
support for sslv2/sslv3 their unit tests and better stream no reassembly flag handling
|
16 years ago |
|
detect-tls.c
|
tls: fix keyword regular expression
|
13 years ago |
|
detect-tls.h
|
TLS app layer: misc fixes, reorder some fields to same memory
|
14 years ago |
|
detect-tos.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-tos.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
detect-ttl.c
|
reject rules with an invalid ttl range
|
14 years ago |
|
detect-ttl.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect-uricontent.c
|
http: body inspection improvement
|
14 years ago |
|
detect-uricontent.h
|
code cleanup - remove DetectUricontentGetLastPattern
|
14 years ago |
|
detect-urilen.c
|
Improve error message for malformed urilen value.
|
14 years ago |
|
detect-urilen.h
|
bug #341 - support for urilen check on both norm and raw buffers
|
14 years ago |
|
detect-window.c
|
code cleanup - replace SigMatchAppendPacket with SigMatchAppendSMToList
|
14 years ago |
|
detect-window.h
|
Moving alert logic to detect-engine-alert.c
|
16 years ago |
|
detect-within.c
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
detect-within.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
detect.c
|
rule analyzer: fix fast pattern analyzer reporting wrong filename (same as rule analyzer).
|
13 years ago |
|
detect.h
|
filemd5: add support code for md5 handling for signatures.
|
14 years ago |
|
flow-alert-sid.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
flow-alert-sid.h
|
GPL and Copyright header updates.
|
16 years ago |
|
flow-bit.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
flow-bit.h
|
GPL and Copyright header updates.
|
16 years ago |
|
flow-hash.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
flow-hash.h
|
flow engine: improve scalability
|
14 years ago |
|
flow-manager.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
flow-manager.h
|
flow engine: improve scalability
|
14 years ago |
|
flow-private.h
|
Undo changes from 88b8f15663. Atomic stack implementation had a-b-a problem.
|
14 years ago |
|
flow-queue.c
|
Undo changes from 88b8f15663. Atomic stack implementation had a-b-a problem.
|
14 years ago |
|
flow-queue.h
|
Undo changes from 88b8f15663. Atomic stack implementation had a-b-a problem.
|
14 years ago |
|
flow-timeout.c
|
check if all packets are processed before disabling detect threads + kill all threads <= detect after FFR + other minor fixes
|
13 years ago |
|
flow-timeout.h
|
flow engine: improve scalability
|
14 years ago |
|
flow-util.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
flow-util.h
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
flow-var.c
|
flow: create a flow lock macro API, implement it for mutex and rwlocks. Mutex remains the default.
|
14 years ago |
|
flow-var.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
flow.c
|
flow: remove unused prune-flows option
|
13 years ago |
|
flow.h
|
flow: remove unused prune-flows option
|
13 years ago |
|
host-queue.c
|
Introduce host table, make tag use it
|
14 years ago |
|
host-queue.h
|
Introduce host table, make tag use it
|
14 years ago |
|
host-timeout.c
|
host: convert use_cnt to a atomic var (like in flow).
|
14 years ago |
|
host-timeout.h
|
Introduce host table, make tag use it
|
14 years ago |
|
host.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
host.h
|
host: convert use_cnt to a atomic var (like in flow).
|
14 years ago |
|
log-droplog.c
|
OpenBSD: introduce SCLocalTime function.
|
14 years ago |
|
log-droplog.h
|
added support to log dropped packet as netfilter logs while in inline mode
|
15 years ago |
|
log-file.c
|
file inspection: improve logging when stream.depth limit is reached. #493.
|
14 years ago |
|
log-file.h
|
file extraction: add waldo option to file log module. This will store the last used file_id so extracted files won't get overwritten is Suricata is restarted.
|
14 years ago |
|
log-filestore.c
|
file inspection: improve logging when stream.depth limit is reached. #493.
|
14 years ago |
|
log-filestore.h
|
file-inspection: split 'file' output module into file-store and file-log. Store stores files. Log logs json records.
|
14 years ago |
|
log-httplog.c
|
OpenBSD: introduce SCLocalTime function.
|
14 years ago |
|
log-httplog.h
|
GPL and Copyright header updates.
|
16 years ago |
|
log-pcap.c
|
Don't display a warning when log-pcap tries to remove an already removed file.
|
14 years ago |
|
log-pcap.h
|
first stab at pcap logging no rotating buff etc
|
15 years ago |
|
output.c
|
Add per packet profiling.
|
14 years ago |
|
output.h
|
SCConfLogOpenGeneric() abstraction for regular and AF_UNIX logs.
|
14 years ago |
|
packet-queue.c
|
Attempt to work around NULL packets we're seeing ending up in queues when the compiler has optimized our code.
|
16 years ago |
|
packet-queue.h
|
GPL and Copyright header updates.
|
16 years ago |
|
pkt-var.c
|
Fix inconsistent use of dynamic memory allocation
|
16 years ago |
|
pkt-var.h
|
GPL and Copyright header updates.
|
16 years ago |
|
ptxdump.py
|
fixed cuda build: portability issues and nvcc version check
|
15 years ago |
|
queue.h
|
Safer macro parenthesization and do/while use
|
14 years ago |
|
reputation.c
|
Fix compiler warning about incomplete prototype (2).
|
16 years ago |
|
reputation.h
|
Fix compiler warning about incomplete prototype (2).
|
16 years ago |
|
respond-reject-libnet11.c
|
Add per packet profiling.
|
14 years ago |
|
respond-reject-libnet11.h
|
GPL and Copyright header updates.
|
16 years ago |
|
respond-reject.c
|
Add per packet profiling.
|
14 years ago |
|
respond-reject.h
|
Add per packet profiling.
|
14 years ago |
|
runmode-af-packet.c
|
Minor fixes for coverity issues.
|
14 years ago |
|
runmode-af-packet.h
|
Add "workers" runmode.
|
14 years ago |
|
runmode-erf-dag.c
|
Implement single, autofp and workers run modes for DAG interfaces. Includes multiple interface support.
|
14 years ago |
|
runmode-erf-dag.h
|
Implement single, autofp and workers run modes for DAG interfaces. Includes multiple interface support.
|
14 years ago |
|
runmode-erf-file.c
|
Fix minor compiler warning.
|
14 years ago |
|
runmode-erf-file.h
|
Update the ERF file runmodes to support autofp and single.
|
14 years ago |
|
runmode-ipfw.c
|
Rename 'worker' running mode to 'workers'
|
13 years ago |
|
runmode-ipfw.h
|
ipfw: Add support for autofp and worker runmode
|
14 years ago |
|
runmode-napatech.c
|
Napatech code formatting fixes.
|
14 years ago |
|
runmode-napatech.h
|
Fix compilation without napatech tech support enabled.
|
14 years ago |
|
runmode-nfq.c
|
Rename 'worker' running mode to 'workers'
|
13 years ago |
|
runmode-nfq.h
|
nfq: add worker runmode support.
|
14 years ago |
|
runmode-pcap-file.c
|
cuda pb tm should be in a thread of its own + pkt_acq should be as free as possible
|
14 years ago |
|
runmode-pcap-file.h
|
Implement a pkt acq loop infra with support for pcap-file.
|
14 years ago |
|
runmode-pcap.c
|
Minor fixes for coverity issues.
|
14 years ago |
|
runmode-pcap.h
|
pcap: add "autofp" runmode
|
14 years ago |
|
runmode-pfring.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
runmode-pfring.h
|
Add "workers" runmode.
|
14 years ago |
|
runmodes.c
|
Rename 'worker' running mode to 'workers'
|
13 years ago |
|
runmodes.h
|
free flowvar entries in flow after live rule swap. Sync flowbits entries into packet struct to be used by alert debuglog when alert debuglog is enabled
|
14 years ago |
|
source-af-packet.c
|
af-packet: fix reconnect code
|
13 years ago |
|
source-af-packet.h
|
af-packet: add support for BPF filter.
|
14 years ago |
|
source-erf-dag.c
|
#482 - use decode_flag for all decode TMs. Use the flag as a way to retrieve decode TMs from ThreadVars
|
14 years ago |
|
source-erf-dag.h
|
Add initial support for reading packets from a DAG card, we only support reading from a single stream at this time.
|
16 years ago |
|
source-erf-file.c
|
#482 - use decode_flag for all decode TMs. Use the flag as a way to retrieve decode TMs from ThreadVars
|
14 years ago |
|
source-erf-file.h
|
Support for reading ERF files.
|
16 years ago |
|
source-ipfw.c
|
Rename 'worker' running mode to 'workers'
|
13 years ago |
|
source-ipfw.h
|
ipfw: don't use socket lock in 'worker' mode
|
14 years ago |
|
source-napatech.c
|
#482 - use decode_flag for all decode TMs. Use the flag as a way to retrieve decode TMs from ThreadVars
|
14 years ago |
|
source-napatech.h
|
Initial Napatech support by Randy Caldejon / nPulse.
|
14 years ago |
|
source-nfq-prototypes.h
|
GPL and Copyright header updates.
|
16 years ago |
|
source-nfq.c
|
Rename 'worker' running mode to 'workers'
|
13 years ago |
|
source-nfq.h
|
nfq: do not use mutex in 'worker' mode
|
14 years ago |
|
source-pcap-file.c
|
#482 - use decode_flag for all decode TMs. Use the flag as a way to retrieve decode TMs from ThreadVars
|
14 years ago |
|
source-pcap-file.h
|
GPL and Copyright header updates.
|
16 years ago |
|
source-pcap.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
source-pcap.h
|
Add pcap workers mode.
|
14 years ago |
|
source-pfring.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
source-pfring.h
|
pf-ring: add support for checksum verif mode
|
14 years ago |
|
stream-tcp-inline.c
|
Add and use utility functions for checksum computing.
|
14 years ago |
|
stream-tcp-inline.h
|
Add and use utility functions for checksum computing.
|
14 years ago |
|
stream-tcp-private.h
|
stream: handle case where Suricata sees 3whs-ACK but server doesn't. Bug #523.
|
13 years ago |
|
stream-tcp-reassemble.c
|
stream: don't NULL dereference p->flow->protoctx in StreamTcpReassembleDepthReached
|
13 years ago |
|
stream-tcp-reassemble.h
|
file inspection: improve logging when stream.depth limit is reached. #493.
|
14 years ago |
|
stream-tcp-sack.c
|
Another batch of minor fixed for issues found by Coverity.
|
14 years ago |
|
stream-tcp-sack.h
|
Implement SACK in the stream engine.
|
15 years ago |
|
stream-tcp-util.c
|
Expand and fix stream unittest helpers.
|
15 years ago |
|
stream-tcp-util.h
|
Initial version of a inline raw reassembly function that reassembles in a sliding window. Introduce new unittest helpers for stream reassembly.
|
15 years ago |
|
stream-tcp.c
|
stream-tcp: no checksum alert if validation is off
|
13 years ago |
|
stream-tcp.h
|
Add counters for SYN, SYN/ACK and RST TCP packets. Issue #251.
|
14 years ago |
|
stream.c
|
Make sure stream debug code is only used in debug mode.
|
14 years ago |
|
stream.h
|
Minor stream optimization.
|
14 years ago |
|
suricata-common.h
|
http user agent keyword + mpm + inspection + fast pattern support added
|
14 years ago |
|
suricata.c
|
Bug #510. Produce error if max-pending-packets is higher than 65534.
|
13 years ago |
|
suricata.h
|
Introduce util-signal.[ch]. Move our signal setup functions here
|
14 years ago |
|
threads.c
|
Add per packet profiling.
|
14 years ago |
|
threads.h
|
Fix SCSetThreadName() macros in threads.h Add FreeBSD thread naming implementation.
|
14 years ago |
|
threadvars.h
|
restructure disabling receive threads. Introduce new flag to indicate that threads have finised running
|
14 years ago |
|
tm-modules.c
|
Add way to profile mutex/spin locks per thread module.
|
14 years ago |
|
tm-modules.h
|
check if all packets are processed before disabling detect threads + kill all threads <= detect after FFR + other minor fixes
|
13 years ago |
|
tm-queuehandlers.c
|
Clean up packet pool at shut down.
|
14 years ago |
|
tm-queuehandlers.h
|
Clean up packet pool at shut down.
|
14 years ago |
|
tm-queues.c
|
batching of packets support for cuda b2g mpm. Supported for both 32 and 64 bit platforms
|
16 years ago |
|
tm-queues.h
|
batching of packets support for cuda b2g mpm. Supported for both 32 and 64 bit platforms
|
16 years ago |
|
tm-threads-common.h
|
file-inspection: split 'file' output module into file-store and file-log. Store stores files. Log logs json records.
|
14 years ago |
|
tm-threads.c
|
check if all packets are processed before disabling detect threads + kill all threads <= detect after FFR + other minor fixes
|
13 years ago |
|
tm-threads.h
|
check if all packets are processed before disabling detect threads + kill all threads <= detect after FFR + other minor fixes
|
13 years ago |
|
tmqh-flow.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
tmqh-flow.h
|
Adapt flow tmqh counters to be atomic vars. Remove support for active flows q handler. Introduce SC_ATOMIC_SET
|
14 years ago |
|
tmqh-nfq.c
|
GPL and Copyright header updates.
|
16 years ago |
|
tmqh-nfq.h
|
GPL and Copyright header updates.
|
16 years ago |
|
tmqh-packetpool.c
|
Clean up packet pool at shut down.
|
14 years ago |
|
tmqh-packetpool.h
|
Clean up packet pool at shut down.
|
14 years ago |
|
tmqh-ringbuffer.c
|
Clean up packet pool at shut down.
|
14 years ago |
|
tmqh-ringbuffer.h
|
Clean up packet pool at shut down.
|
14 years ago |
|
tmqh-simple.c
|
Minor flowq updates.
|
14 years ago |
|
tmqh-simple.h
|
batching of packets support for cuda b2g mpm. Supported for both 32 and 64 bit platforms
|
16 years ago |
|
util-action.c
|
util action api returns error code if it encounters wrong values parsing wrong action conf
|
14 years ago |
|
util-action.h
|
util action api returns error code if it encounters wrong values parsing wrong action conf
|
14 years ago |
|
util-affinity.c
|
Convert underscores to dashes in thread affinity type names.
|
14 years ago |
|
util-affinity.h
|
Fixes for building in Cygwin.
|
14 years ago |
|
util-atomic.c
|
sc_atomic_cas replaced with sc_atomic_set
|
14 years ago |
|
util-atomic.h
|
add unittest for atomic operation with void *
|
14 years ago |
|
util-binsearch.c
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-binsearch.h
|
GPL and Copyright header updates.
|
16 years ago |
|
util-bloomfilter-counting.c
|
Clean up for unittests code: only compile unittest api code when unittests are enabled. Fix unittest code that wasn't wrapped in the proper UNITTESTS ifdefs.
|
14 years ago |
|
util-bloomfilter-counting.h
|
GPL and Copyright header updates.
|
16 years ago |
|
util-bloomfilter.c
|
GPL and Copyright header updates.
|
16 years ago |
|
util-bloomfilter.h
|
Change BloomFilter structure layout to reflect order of access.
|
15 years ago |
|
util-buffer.c
|
Misc buffer API update.
|
14 years ago |
|
util-buffer.h
|
debuglog now uses the new mem buffer API. Improve file ctx locking to just the file write
|
14 years ago |
|
util-byte.c
|
fix possible typo in strtoul error handling.
|
15 years ago |
|
util-byte.h
|
Win32 compile fixes.
|
14 years ago |
|
util-checksum.c
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
util-checksum.h
|
Assume offloading in use if 1/10th of the packets has a bad checksum.
|
14 years ago |
|
util-cidr.c
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-cidr.h
|
GPL and Copyright header updates.
|
16 years ago |
|
util-classification-config.c
|
Windows build and other misc fixes.
|
13 years ago |
|
util-classification-config.h
|
clean classification config API
|
14 years ago |
|
util-clock.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-coredump-config.c
|
Do not use underscored config vars internally.
|
14 years ago |
|
util-coredump-config.h
|
Enable/disable core dump in config (feature 319)
|
14 years ago |
|
util-cpu.c
|
bug #466 - Updated getticks() to serialize execution of rdtsc with cpuid
|
13 years ago |
|
util-cpu.h
|
Basic rule profiling even though the results may be skewed by a bad rule in a grouping of rules.
|
16 years ago |
|
util-cuda-handlers.c
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-cuda-handlers.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-cuda.c
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-cuda.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-daemon.c
|
OpenBSD: don't close std* to avoid problem.
|
14 years ago |
|
util-daemon.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-debug-filters.c
|
more coverity fixes
|
14 years ago |
|
util-debug-filters.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-debug.c
|
OpenBSD: introduce SCLocalTime function.
|
14 years ago |
|
util-debug.h
|
fix cppcheck analyzer warnings - bug 439
|
14 years ago |
|
util-decode-asn1.c
|
Do not use underscored config vars internally.
|
14 years ago |
|
util-decode-asn1.h
|
Fix asn1 decoder frame oob mem. Adding max stack frames to suricata.yaml
|
15 years ago |
|
util-decode-der-get.c
|
TLS: add variable to store the error code in the decoder
|
14 years ago |
|
util-decode-der-get.h
|
TLS: add variable to store the error code in the decoder
|
14 years ago |
|
util-decode-der.c
|
Use SCFree instead of free in DER decoder.
|
13 years ago |
|
util-decode-der.h
|
TLS: add variable to store the error code in the decoder
|
14 years ago |
|
util-device.c
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
util-device.h
|
Clean up csum detection output, misc fixes.
|
14 years ago |
|
util-enum.c
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-enum.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-error.c
|
bug #455 - Warn users on signature event vars having precedence over threshold.conf ones
|
14 years ago |
|
util-error.h
|
bug #455 - Warn users on signature event vars having precedence over threshold.conf ones
|
14 years ago |
|
util-file.c
|
filemd5: fix compilation if libnss isn't available
|
14 years ago |
|
util-file.h
|
filemd5: add support code for md5 handling for signatures.
|
14 years ago |
|
util-fix_checksum.c
|
…
|
|
|
util-fix_checksum.h
|
…
|
|
|
util-fmemopen.c
|
Compilation fix for OpenBSD and win32.
|
15 years ago |
|
util-fmemopen.h
|
Compilation fix for OpenBSD and win32.
|
15 years ago |
|
util-hash-lookup3.c
|
fix compiler warnings
|
14 years ago |
|
util-hash-lookup3.h
|
Add a new hash datatype to do speedy lookups of read only uniform data, like md5's.
|
14 years ago |
|
util-hash.c
|
Clean up for unittests code: only compile unittest api code when unittests are enabled. Fix unittest code that wasn't wrapped in the proper UNITTESTS ifdefs.
|
14 years ago |
|
util-hash.h
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
util-hashlist.c
|
Add memcmp api with a plain memcmp function and a SSE3 accelerated memcmp.
|
15 years ago |
|
util-hashlist.h
|
Various fixes and improvements based on feedback by Coverity analyzer.
|
14 years ago |
|
util-host-os-info.c
|
bug 499 - update host os info enum map to use - instead of _ + add new unittests
|
13 years ago |
|
util-host-os-info.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-ioctl.c
|
Clean up & better check includes to allow Windows to build.
|
15 years ago |
|
util-ioctl.h
|
Add interface setting discovery via ioctl
|
15 years ago |
|
util-logopenfile.c
|
Fix OpenBSD compilation.
|
14 years ago |
|
util-logopenfile.h
|
SCConfLogOpenGeneric() abstraction for regular and AF_UNIX logs.
|
14 years ago |
|
util-magic.c
|
Minor fixes for coverity issues.
|
14 years ago |
|
util-magic.h
|
File carving -- enable reponse file extraction
|
14 years ago |
|
util-mem.h
|
fix cppcheck analyzer warnings - bug 439
|
14 years ago |
|
util-memcmp.c
|
Fix SSE memcmp functions reading beyond the buffer. Add tests to bench them.
|
15 years ago |
|
util-memcmp.h
|
Fix memcmp checks that prevent reading past buffer boundary.
|
15 years ago |
|
util-misc.c
|
Introduce util-signal.[ch]. Move our signal setup functions here
|
14 years ago |
|
util-misc.h
|
Introduce util-signal.[ch]. Move our signal setup functions here
|
14 years ago |
|
util-mpm-ac-bs.c
|
ac-bs and ac-gfbs mem cleanup
|
14 years ago |
|
util-mpm-ac-bs.h
|
Support for new MPM ac-bs added
|
14 years ago |
|
util-mpm-ac-gfbs.c
|
ac-bs and ac-gfbs mem cleanup
|
14 years ago |
|
util-mpm-ac-gfbs.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-mpm-ac.c
|
mpm engine and ac mem free fixes
|
14 years ago |
|
util-mpm-ac.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-mpm-b2g-cuda-kernel.cu
|
Changed my email address to anoopsaldanha@gmail.com from my current one - Should have been an amend over my previous commit, but that commit's pushed out
|
14 years ago |
|
util-mpm-b2g-cuda.c
|
sc_atomic_cas replaced with sc_atomic_set
|
14 years ago |
|
util-mpm-b2g-cuda.h
|
b2g cuda up, compiling and running
|
14 years ago |
|
util-mpm-b2g.c
|
Don't print message after SCMalloc failure.
|
15 years ago |
|
util-mpm-b2g.h
|
Change mpm hash_size config setting highest to higher as highest wasn't the... highest. Max was higher. Leaving highest as an alias to higher for backwards compatibility.
|
15 years ago |
|
util-mpm-b2gc.c
|
Don't print message after SCMalloc failure.
|
15 years ago |
|
util-mpm-b2gc.h
|
Change mpm hash_size config setting highest to higher as highest wasn't the... highest. Max was higher. Leaving highest as an alias to higher for backwards compatibility.
|
15 years ago |
|
util-mpm-b2gm.c
|
Don't print message after SCMalloc failure.
|
15 years ago |
|
util-mpm-b2gm.h
|
Change mpm hash_size config setting highest to higher as highest wasn't the... highest. Max was higher. Leaving highest as an alias to higher for backwards compatibility.
|
15 years ago |
|
util-mpm-b3g.c
|
Openbsd: Fix some warning related to inline usage.
|
14 years ago |
|
util-mpm-b3g.h
|
Change mpm hash_size config setting highest to higher as highest wasn't the... highest. Max was higher. Leaving highest as an alias to higher for backwards compatibility.
|
15 years ago |
|
util-mpm-wumanber.c
|
Openbsd: Fix some warning related to inline usage.
|
14 years ago |
|
util-mpm-wumanber.h
|
GPL and Copyright header updates.
|
16 years ago |
|
util-mpm.c
|
ac-bs and ac-gfbs mem cleanup
|
14 years ago |
|
util-mpm.h
|
make mpm ctx container de_ctx specific. Also introduce global variable in mpm_ctx. this is a workaround for cleaning non global mpm_ctx's since we now don't supply the de_ctx around the detection engine API
|
14 years ago |
|
util-optimize.h
|
Add compiler and hardware barrier macro's.
|
15 years ago |
|
util-path.c
|
Fix PathIsAbsolute function not dealing with CYGWIN. Handle absolute paths in logfile api.
|
14 years ago |
|
util-path.h
|
Add functions to determine whether a path is absolute or relative.
|
14 years ago |
|
util-pidfile.c
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-pidfile.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-pool.c
|
Fix a number of potential issues found by CLANG and cppcheck.
|
14 years ago |
|
util-pool.h
|
GPL and Copyright header updates.
|
16 years ago |
|
util-print.c
|
debuglog now uses the new mem buffer API. Improve file ctx locking to just the file write
|
14 years ago |
|
util-print.h
|
debuglog now uses the new mem buffer API. Improve file ctx locking to just the file write
|
14 years ago |
|
util-privs.c
|
Remove duplicate sys/prctl.h configure check. Wrap another include in HAVE_SYS_PRCTL_H.
|
14 years ago |
|
util-privs.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-profiling-locks.c
|
profiling: fix lock profiling int print issue.
|
14 years ago |
|
util-profiling-locks.h
|
profiling: add per lock location profiling
|
14 years ago |
|
util-profiling.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
util-profiling.h
|
Fix error in per packet detection engine profiling.
|
14 years ago |
|
util-proto-name.c
|
Win32 compile fixes.
|
14 years ago |
|
util-proto-name.h
|
Win32 compile fixes.
|
14 years ago |
|
util-radix-tree.c
|
Minor unittest fixes to make Coverity happy.
|
14 years ago |
|
util-radix-tree.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-random.c
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-random.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-reference-config.c
|
Minor fixes for coverity issues.
|
14 years ago |
|
util-reference-config.h
|
clean reference config API
|
14 years ago |
|
util-ringbuffer.c
|
cleaning: fix warning when building with clang.
|
14 years ago |
|
util-ringbuffer.h
|
Fix a compiler warning due to a broken prototype declaration.
|
15 years ago |
|
util-rohash.c
|
Add filemd5 keyword that loads a list of md5's to match a file's md5 against.
|
14 years ago |
|
util-rohash.h
|
Add filemd5 keyword that loads a list of md5's to match a file's md5 against.
|
14 years ago |
|
util-rule-vars.c
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-rule-vars.h
|
Changed my email address to anoopsaldanha at gmail dot com from my current one
|
14 years ago |
|
util-runmodes.c
|
Use less queues and threads in nfq autofp mode.
|
14 years ago |
|
util-runmodes.h
|
runmode: Add support for IPS running mode
|
14 years ago |
|
util-signal.c
|
update clean up of old detection engine contexts for live rule swap
|
14 years ago |
|
util-signal.h
|
code cleanup for live swap
|
14 years ago |
|
util-spm-bm.c
|
update all spm algos to use 16 bit pattern lengths. Should compress a lot of tables
|
14 years ago |
|
util-spm-bm.h
|
Fix typo in spm prototype declaration.
|
14 years ago |
|
util-spm-bs.c
|
update all spm algos to use 16 bit pattern lengths. Should compress a lot of tables
|
14 years ago |
|
util-spm-bs.h
|
update all spm algos to use 16 bit pattern lengths. Should compress a lot of tables
|
14 years ago |
|
util-spm-bs2bm.c
|
update all spm algos to use 16 bit pattern lengths. Should compress a lot of tables
|
14 years ago |
|
util-spm-bs2bm.h
|
update all spm algos to use 16 bit pattern lengths. Should compress a lot of tables
|
14 years ago |
|
util-spm.c
|
update all spm algos to use 16 bit pattern lengths. Should compress a lot of tables
|
14 years ago |
|
util-spm.h
|
update all spm algos to use 16 bit pattern lengths. Should compress a lot of tables
|
14 years ago |
|
util-strlcatu.c
|
…
|
|
|
util-strlcpyu.c
|
…
|
|
|
util-syslog.c
|
Add option to set the syslog level for the alerts. Minor cleanups.
|
15 years ago |
|
util-syslog.h
|
Add option to set the syslog level for the alerts. Minor cleanups.
|
15 years ago |
|
util-threshold-config.c
|
Windows build and other misc fixes.
|
13 years ago |
|
util-threshold-config.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-time.c
|
OpenBSD: introduce SCLocalTime function.
|
14 years ago |
|
util-time.h
|
OpenBSD: introduce SCLocalTime function.
|
14 years ago |
|
util-unittest-helper.c
|
Undo changes from 88b8f15663. Atomic stack implementation had a-b-a problem.
|
14 years ago |
|
util-unittest-helper.h
|
Clean up for unittests code: only compile unittest api code when unittests are enabled. Fix unittest code that wasn't wrapped in the proper UNITTESTS ifdefs.
|
14 years ago |
|
util-unittest.c
|
Do not use underscored config vars internally.
|
14 years ago |
|
util-unittest.h
|
Clean up for unittests code: only compile unittest api code when unittests are enabled. Fix unittest code that wasn't wrapped in the proper UNITTESTS ifdefs.
|
14 years ago |
|
util-validate.h
|
Fix locking error in filestore handling. Add debug validate check for asserting a flow is locked.
|
14 years ago |
|
util-var-name.c
|
variable names global vars, global no more. Moved to detection engine ctx, a place it belongs
|
14 years ago |
|
util-var-name.h
|
variable names global vars, global no more. Moved to detection engine ctx, a place it belongs
|
14 years ago |
|
util-var.c
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-var.h
|
Import of GPLv2 Header 050410
|
16 years ago |
|
util-vector.h
|
Use pmmintrin.h as older gcc's don't have immintrin.h it seems.
|
15 years ago |
|
win32-misc.c
|
Win32 compile fixes.
|
14 years ago |
|
win32-misc.h
|
Win32 compile fixes.
|
14 years ago |
|
win32-service.c
|
Add strncpy and strncat to banned function list as we have better replacements: strlcpy and strlcat.
|
15 years ago |
|
win32-service.h
|
added possibility to run suricata as WIN32 service
|
16 years ago |
|
win32-syslog.h
|
…
|
|