]>
git.ipfire.org Git - thirdparty/snort3.git/log
Russ Combs [Thu, 6 Nov 2014 02:37:38 +0000 (21:37 -0500)]
added hi event squelch
Russ Combs [Wed, 5 Nov 2014 20:05:42 +0000 (15:05 -0500)]
change log
Russ Combs [Wed, 5 Nov 2014 20:05:05 +0000 (15:05 -0500)]
Merge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs
Russ Combs [Wed, 5 Nov 2014 20:04:04 +0000 (15:04 -0500)]
prelim support for /* comments */ in text rules
Josh [Tue, 4 Nov 2014 23:28:49 +0000 (17:28 -0600)]
more bug fixes. Invalid pointer arithmetic and adding another REG_TEST for frag options
Josh [Tue, 4 Nov 2014 21:45:39 +0000 (15:45 -0600)]
fixing warning from last commit
Josh [Tue, 4 Nov 2014 21:44:43 +0000 (15:44 -0600)]
tweaking a Packet function so it makes logical sense
Tom Peters [Tue, 4 Nov 2014 21:36:23 +0000 (16:36 -0500)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
Russ Combs [Tue, 4 Nov 2014 20:56:17 +0000 (15:56 -0500)]
latest from Josh
Russ Combs [Tue, 4 Nov 2014 20:55:35 +0000 (15:55 -0500)]
Merge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs
Russ Combs [Tue, 4 Nov 2014 20:55:21 +0000 (15:55 -0500)]
fixed boyer-moore init and removed content byte extract var cruft
Josh [Tue, 4 Nov 2014 17:10:04 +0000 (11:10 -0600)]
Snort2Lua tweak
Josh [Tue, 4 Nov 2014 16:13:43 +0000 (10:13 -0600)]
Begin printing outer layers for Rebuilt frag packets
Josh [Tue, 4 Nov 2014 15:51:49 +0000 (09:51 -0600)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
Josh [Tue, 4 Nov 2014 15:40:35 +0000 (09:40 -0600)]
Adjusting ProcessPacket() signature. Now sets appropriate flag flags after decode
Josh [Tue, 4 Nov 2014 14:54:41 +0000 (08:54 -0600)]
Will now log approproiate protocol name for outer IP layers.
rcombs [Tue, 4 Nov 2014 00:59:33 +0000 (19:59 -0500)]
figlet foo
rcombs [Tue, 4 Nov 2014 00:45:13 +0000 (19:45 -0500)]
fixed splitter foo
rcombs [Tue, 4 Nov 2014 00:01:50 +0000 (19:01 -0500)]
fixed norm conf init; block rule parsing
Josh [Mon, 3 Nov 2014 21:11:06 +0000 (15:11 -0600)]
minor IPv6 logging tweak
Josh [Mon, 3 Nov 2014 21:55:02 +0000 (15:55 -0600)]
minor icmp logging tweak
Josh [Mon, 3 Nov 2014 21:43:19 +0000 (15:43 -0600)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
Tom Peters [Mon, 3 Nov 2014 18:38:20 +0000 (13:38 -0500)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
Josh [Mon, 3 Nov 2014 18:31:08 +0000 (12:31 -0600)]
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Josh [Mon, 3 Nov 2014 18:12:18 +0000 (12:12 -0600)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
rcombs [Mon, 3 Nov 2014 18:11:21 +0000 (13:11 -0500)]
prevent repeated small chunk length alerts from hi
Josh [Mon, 3 Nov 2014 17:43:37 +0000 (11:43 -0600)]
fixing warnings
Josh [Mon, 3 Nov 2014 17:33:38 +0000 (11:33 -0600)]
In rebuilt packets, fixing dgram size
Tom Peters [Mon, 3 Nov 2014 17:12:01 +0000 (12:12 -0500)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
Josh [Mon, 3 Nov 2014 17:01:40 +0000 (11:01 -0600)]
setting the ip_proto_next field for rebuilt packets
Josh [Mon, 3 Nov 2014 16:16:29 +0000 (10:16 -0600)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
Josh [Mon, 3 Nov 2014 16:06:38 +0000 (10:06 -0600)]
tweaking alert_fast
Russ Combs [Mon, 3 Nov 2014 13:06:47 +0000 (08:06 -0500)]
commented out process() and reload_hosts() pending further development
Russ Combs [Mon, 3 Nov 2014 11:10:32 +0000 (06:10 -0500)]
reload basic modules and inspectors only
Russ Combs [Mon, 3 Nov 2014 11:09:47 +0000 (06:09 -0500)]
changed doc to use legacy instead of classic
Russ Combs [Sun, 2 Nov 2014 22:16:18 +0000 (17:16 -0500)]
removed debug assert
Russ Combs [Sun, 2 Nov 2014 21:46:27 +0000 (16:46 -0500)]
fixed flowbits byte extract var init
Russ Combs [Sun, 2 Nov 2014 11:55:46 +0000 (06:55 -0500)]
norm flags and ps log file fixes
Russ Combs [Sat, 1 Nov 2014 12:16:24 +0000 (08:16 -0400)]
added default bindings for stream only configs
Russ Combs [Sat, 1 Nov 2014 00:28:32 +0000 (20:28 -0400)]
ip defrag fixes from Josh
Josh [Fri, 31 Oct 2014 22:14:00 +0000 (17:14 -0500)]
loggin tweak. fragment flags print again
Josh [Fri, 31 Oct 2014 22:12:16 +0000 (17:12 -0500)]
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Josh [Fri, 31 Oct 2014 22:02:49 +0000 (17:02 -0500)]
updating Snort2Lua PCRE. All rule conversion will now convert as much as possible (used to stop midway through a conversion)
Josh [Fri, 31 Oct 2014 22:00:25 +0000 (17:00 -0500)]
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Tom Peters [Fri, 31 Oct 2014 21:43:24 +0000 (17:43 -0400)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
Josh [Fri, 31 Oct 2014 21:38:44 +0000 (16:38 -0500)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
Russ Combs [Fri, 31 Oct 2014 21:10:51 +0000 (17:10 -0400)]
nhttp no longer REG_TEST only
Russ Combs [Fri, 31 Oct 2014 20:58:34 +0000 (16:58 -0400)]
Merge branch 'master' of 10.6.12.29:/nfs/home/thopeter/Pub/Snort++
Russ Combs [Fri, 31 Oct 2014 20:57:48 +0000 (16:57 -0400)]
fixed classtype segfault on ctor after parse error
rcombs [Fri, 31 Oct 2014 20:45:46 +0000 (16:45 -0400)]
fixed parsing of reference with \;
Russ Combs [Fri, 31 Oct 2014 20:00:51 +0000 (16:00 -0400)]
tweaks
Josh [Fri, 31 Oct 2014 18:59:35 +0000 (13:59 -0500)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
Josh [Fri, 31 Oct 2014 18:56:13 +0000 (13:56 -0500)]
IP6 Frag working. Still have an extra IP6 alert from a rebuilt IP6 Frag.
Tom Peters [Fri, 31 Oct 2014 14:31:43 +0000 (10:31 -0400)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
Russ Combs [Fri, 31 Oct 2014 08:51:52 +0000 (04:51 -0400)]
tweaked inspector execution
rcombs [Fri, 31 Oct 2014 00:36:56 +0000 (20:36 -0400)]
change log update
rcombs [Fri, 31 Oct 2014 00:32:15 +0000 (20:32 -0400)]
Merge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs
rcombs [Fri, 31 Oct 2014 00:31:55 +0000 (20:31 -0400)]
squelch 129:9 and 129:10 if swapped
Josh [Fri, 31 Oct 2014 00:11:48 +0000 (19:11 -0500)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
Josh [Fri, 31 Oct 2014 00:11:14 +0000 (19:11 -0500)]
minor fixes. enum still contains its original string
rcombs [Thu, 30 Oct 2014 23:57:32 +0000 (19:57 -0400)]
redisabled new_http_inspect from REG_TEST
Josh [Thu, 30 Oct 2014 19:54:07 +0000 (14:54 -0500)]
fixing text_log output for IPv4 options
Josh [Thu, 30 Oct 2014 19:36:10 +0000 (14:36 -0500)]
fixing two FATAL errors
Josh [Thu, 30 Oct 2014 19:35:00 +0000 (14:35 -0500)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
rcombs [Thu, 30 Oct 2014 19:31:00 +0000 (15:31 -0400)]
tweaked S5_TRACE output
Josh [Thu, 30 Oct 2014 18:28:50 +0000 (13:28 -0500)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
Tom Peters [Thu, 30 Oct 2014 18:22:21 +0000 (14:22 -0400)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
rcombs [Thu, 30 Oct 2014 17:39:40 +0000 (13:39 -0400)]
tcp options logging for reg test disabled
rcombs [Thu, 30 Oct 2014 13:45:59 +0000 (09:45 -0400)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
Russ Combs [Thu, 30 Oct 2014 13:44:46 +0000 (09:44 -0400)]
126
Russ Combs [Thu, 30 Oct 2014 13:37:49 +0000 (09:37 -0400)]
merge from russ desktop
Russ Combs [Thu, 30 Oct 2014 13:36:49 +0000 (09:36 -0400)]
see changelog
rcombs [Thu, 30 Oct 2014 04:25:38 +0000 (00:25 -0400)]
Merge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs
rcombs [Thu, 30 Oct 2014 04:23:23 +0000 (00:23 -0400)]
fixed bogus 120:3 alerts
Josh [Wed, 29 Oct 2014 22:44:20 +0000 (15:44 -0700)]
tweak 3
Josh [Wed, 29 Oct 2014 22:41:51 +0000 (15:41 -0700)]
another tweak
Josh [Wed, 29 Oct 2014 22:41:43 +0000 (17:41 -0500)]
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Josh [Wed, 29 Oct 2014 22:39:33 +0000 (15:39 -0700)]
tweak
Josh [Wed, 29 Oct 2014 22:39:14 +0000 (17:39 -0500)]
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Josh [Wed, 29 Oct 2014 22:38:22 +0000 (15:38 -0700)]
Snort2Lua: create tcp/ipv4 tables if no arguments provided
Josh [Wed, 29 Oct 2014 22:36:51 +0000 (17:36 -0500)]
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Josh [Wed, 29 Oct 2014 22:35:53 +0000 (17:35 -0500)]
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Josh [Wed, 29 Oct 2014 22:01:21 +0000 (15:01 -0700)]
fixing minor typo in Snort2Lua
Josh [Wed, 29 Oct 2014 21:58:44 +0000 (16:58 -0500)]
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Josh [Wed, 29 Oct 2014 21:38:30 +0000 (14:38 -0700)]
updating snort2lua frag3 errors
Josh [Wed, 29 Oct 2014 21:36:00 +0000 (16:36 -0500)]
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Josh [Wed, 29 Oct 2014 20:47:00 +0000 (15:47 -0500)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs
Tom Peters [Wed, 29 Oct 2014 20:39:24 +0000 (16:39 -0400)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
Josh [Wed, 29 Oct 2014 20:36:30 +0000 (15:36 -0500)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
Josh [Wed, 29 Oct 2014 19:45:31 +0000 (12:45 -0700)]
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs
Conflicts:
src/log/log_text.cc
Josh [Wed, 29 Oct 2014 19:29:05 +0000 (12:29 -0700)]
updating TCP option output format. Now reflects Snort's format
rcombs [Wed, 29 Oct 2014 19:23:43 +0000 (15:23 -0400)]
merge from josh
rcombs [Wed, 29 Oct 2014 19:20:55 +0000 (15:20 -0400)]
fixed tcp options log format
Josh [Wed, 29 Oct 2014 19:19:06 +0000 (12:19 -0700)]
various logging patches
Tom Peters [Wed, 29 Oct 2014 18:06:22 +0000 (14:06 -0400)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
rcombs [Wed, 29 Oct 2014 17:44:22 +0000 (13:44 -0400)]
alert_fast fix
Tom Peters [Wed, 29 Oct 2014 14:59:06 +0000 (10:59 -0400)]
Merge branch 'master' of /nfs/home/rucombs/Snort++
rcombs [Wed, 29 Oct 2014 12:41:48 +0000 (08:41 -0400)]
tweaked S5_TRACE output
rcombs [Wed, 29 Oct 2014 12:29:55 +0000 (08:29 -0400)]
stream policy fixes
rcombs [Wed, 29 Oct 2014 11:42:25 +0000 (07:42 -0400)]
set default id and priority based on rule class