mirror of https://github.com/OISF/suricata
You cannot select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Enables IPS functionality on Windows using the open-source (LGPLv3/GPLv2) WinDivert driver and API. From https://www.reqrypt.org/windivert-doc.html : "WinDivert is a user-mode capture/sniffing/modification/blocking/re-injection package for Windows Vista, Windows Server 2008, Windows 7, and Windows 8. WinDivert can be used to implement user-mode packet filters, packet sniffers, firewalls, NAT, VPNs, tunneling applications, etc., without the need to write kernel-mode code." - adds `--windivert [filter string]` and `--windivert-forward [filter string]` command-line options to enable WinDivert IPS mode. `--windivert[-forward] true` will open a filter for all traffic. See https://www.reqrypt.org/windivert-doc.html#filter_language for more information. Limitation: currently limited to `autofp` runmode. Additionally: - `tmm_modules` now zeroed during `RegisterAllModules` - fixed Windows Vista+ `inet_ntop` call in `PrintInet` - fixed `GetRandom` bug (nonexistent keys) on fresh Windows installs - fixed `RandomGetClock` building on Windows builds - Added WMI queries for MTU |
7 years ago | |
---|---|---|
.. | ||
_static | ||
capture-hardware | 7 years ago | |
configuration | 7 years ago | |
file-extraction | ||
licenses | ||
lua | ||
manpages | ||
output | 7 years ago | |
partials | 7 years ago | |
performance | 7 years ago | |
reputation | ||
rule-management | ||
rules | 7 years ago | |
setting-up-ipsinline-for-linux | ||
.gitignore | ||
Makefile.am | ||
Makefile.sphinx | ||
README.md | ||
acknowledgements.rst | ||
command-line-options.rst | ||
conf.py | ||
convert.py | ||
index.rst | ||
initscripts.rst | ||
install.rst | ||
make-sense-alerts.rst | ||
public-data-sets.rst | ||
setting-up-ipsinline-for-linux.rst | ||
setting-up-ipsinline-for-windows.rst | 7 years ago | |
unix-socket.rst | ||
what-is-suricata.rst |
README.md
Suricata User Guide
This directory contains the Suricata Guide. The Sphinx Document Generate is used to build the documentation. For a primer os reStructuredText see the reStructuredText Primer.
Development Server
To help with writing documentation there is a development web server with live reload. To get run the live server you will first need npm installed then run the following:
npm install
gulp serve
Then point your browser at http://localhost:8000/_build/html/index.html
Any edits to .rst files should trigger a "make html" and cause your browser to refresh.