]> git.ipfire.org Git - thirdparty/snort3.git/log
thirdparty/snort3.git
10 years agoadded hi event squelch
Russ Combs [Thu, 6 Nov 2014 02:37:38 +0000 (21:37 -0500)] 
added hi event squelch

10 years agochange log
Russ Combs [Wed, 5 Nov 2014 20:05:42 +0000 (15:05 -0500)] 
change log

10 years agoMerge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs
Russ Combs [Wed, 5 Nov 2014 20:05:05 +0000 (15:05 -0500)] 
Merge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs

10 years agoprelim support for /* comments */ in text rules
Russ Combs [Wed, 5 Nov 2014 20:04:04 +0000 (15:04 -0500)] 
prelim support for /* comments */ in text rules

10 years agomore bug fixes. Invalid pointer arithmetic and adding another REG_TEST for frag...
Josh [Tue, 4 Nov 2014 23:28:49 +0000 (17:28 -0600)] 
more bug fixes.  Invalid pointer arithmetic and adding another REG_TEST for frag options

10 years agofixing warning from last commit
Josh [Tue, 4 Nov 2014 21:45:39 +0000 (15:45 -0600)] 
fixing warning from last commit

10 years agotweaking a Packet function so it makes logical sense
Josh [Tue, 4 Nov 2014 21:44:43 +0000 (15:44 -0600)] 
tweaking a Packet function so it makes logical sense

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
Tom Peters [Tue, 4 Nov 2014 21:36:23 +0000 (16:36 -0500)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years agolatest from Josh
Russ Combs [Tue, 4 Nov 2014 20:56:17 +0000 (15:56 -0500)] 
latest from Josh

10 years agoMerge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs
Russ Combs [Tue, 4 Nov 2014 20:55:35 +0000 (15:55 -0500)] 
Merge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs

10 years agofixed boyer-moore init and removed content byte extract var cruft
Russ Combs [Tue, 4 Nov 2014 20:55:21 +0000 (15:55 -0500)] 
fixed boyer-moore init and removed content byte extract var cruft

10 years agoSnort2Lua tweak
Josh [Tue, 4 Nov 2014 17:10:04 +0000 (11:10 -0600)] 
Snort2Lua tweak

10 years agoBegin printing outer layers for Rebuilt frag packets
Josh [Tue, 4 Nov 2014 16:13:43 +0000 (10:13 -0600)] 
Begin printing outer layers for Rebuilt frag packets

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Tue, 4 Nov 2014 15:51:49 +0000 (09:51 -0600)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

10 years agoAdjusting ProcessPacket() signature. Now sets appropriate flag flags after decode
Josh [Tue, 4 Nov 2014 15:40:35 +0000 (09:40 -0600)] 
Adjusting ProcessPacket() signature.  Now sets appropriate flag flags after decode

10 years agoWill now log approproiate protocol name for outer IP layers.
Josh [Tue, 4 Nov 2014 14:54:41 +0000 (08:54 -0600)] 
Will now log approproiate protocol name for outer IP layers.

10 years agofiglet foo
rcombs [Tue, 4 Nov 2014 00:59:33 +0000 (19:59 -0500)] 
figlet foo

10 years agofixed splitter foo
rcombs [Tue, 4 Nov 2014 00:45:13 +0000 (19:45 -0500)] 
fixed splitter foo

10 years agofixed norm conf init; block rule parsing
rcombs [Tue, 4 Nov 2014 00:01:50 +0000 (19:01 -0500)] 
fixed norm conf init; block rule parsing

10 years agominor IPv6 logging tweak
Josh [Mon, 3 Nov 2014 21:11:06 +0000 (15:11 -0600)] 
minor IPv6 logging tweak

10 years agominor icmp logging tweak
Josh [Mon, 3 Nov 2014 21:55:02 +0000 (15:55 -0600)] 
minor icmp logging tweak

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Mon, 3 Nov 2014 21:43:19 +0000 (15:43 -0600)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
Tom Peters [Mon, 3 Nov 2014 18:38:20 +0000 (13:38 -0500)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years agoMerge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Mon, 3 Nov 2014 18:31:08 +0000 (12:31 -0600)] 
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Mon, 3 Nov 2014 18:12:18 +0000 (12:12 -0600)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agoprevent repeated small chunk length alerts from hi
rcombs [Mon, 3 Nov 2014 18:11:21 +0000 (13:11 -0500)] 
prevent repeated small chunk length alerts from hi

10 years agofixing warnings
Josh [Mon, 3 Nov 2014 17:43:37 +0000 (11:43 -0600)] 
fixing warnings

10 years agoIn rebuilt packets, fixing dgram size
Josh [Mon, 3 Nov 2014 17:33:38 +0000 (11:33 -0600)] 
In rebuilt packets, fixing dgram size

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
Tom Peters [Mon, 3 Nov 2014 17:12:01 +0000 (12:12 -0500)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years agosetting the ip_proto_next field for rebuilt packets
Josh [Mon, 3 Nov 2014 17:01:40 +0000 (11:01 -0600)] 
setting the ip_proto_next field for rebuilt packets

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Mon, 3 Nov 2014 16:16:29 +0000 (10:16 -0600)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

10 years agotweaking alert_fast
Josh [Mon, 3 Nov 2014 16:06:38 +0000 (10:06 -0600)] 
tweaking alert_fast

10 years agocommented out process() and reload_hosts() pending further development
Russ Combs [Mon, 3 Nov 2014 13:06:47 +0000 (08:06 -0500)] 
commented out process() and reload_hosts() pending further development

10 years agoreload basic modules and inspectors only
Russ Combs [Mon, 3 Nov 2014 11:10:32 +0000 (06:10 -0500)] 
reload basic modules and inspectors only

10 years agochanged doc to use legacy instead of classic
Russ Combs [Mon, 3 Nov 2014 11:09:47 +0000 (06:09 -0500)] 
changed doc to use legacy instead of classic

10 years agoremoved debug assert
Russ Combs [Sun, 2 Nov 2014 22:16:18 +0000 (17:16 -0500)] 
removed debug assert

10 years agofixed flowbits byte extract var init
Russ Combs [Sun, 2 Nov 2014 21:46:27 +0000 (16:46 -0500)] 
fixed flowbits byte extract var init

10 years agonorm flags and ps log file fixes
Russ Combs [Sun, 2 Nov 2014 11:55:46 +0000 (06:55 -0500)] 
norm flags and ps log file fixes

10 years agoadded default bindings for stream only configs
Russ Combs [Sat, 1 Nov 2014 12:16:24 +0000 (08:16 -0400)] 
added default bindings for stream only configs

10 years agoip defrag fixes from Josh
Russ Combs [Sat, 1 Nov 2014 00:28:32 +0000 (20:28 -0400)] 
ip defrag fixes from Josh

10 years agologgin tweak. fragment flags print again
Josh [Fri, 31 Oct 2014 22:14:00 +0000 (17:14 -0500)] 
loggin tweak. fragment flags print again

10 years agoMerge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Fri, 31 Oct 2014 22:12:16 +0000 (17:12 -0500)] 
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agoupdating Snort2Lua PCRE. All rule conversion will now convert as much as possible...
Josh [Fri, 31 Oct 2014 22:02:49 +0000 (17:02 -0500)] 
updating Snort2Lua PCRE. All rule conversion will now convert as much as possible (used to stop midway through a conversion)

10 years agoMerge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Fri, 31 Oct 2014 22:00:25 +0000 (17:00 -0500)] 
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
Tom Peters [Fri, 31 Oct 2014 21:43:24 +0000 (17:43 -0400)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Fri, 31 Oct 2014 21:38:44 +0000 (16:38 -0500)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

10 years agonhttp no longer REG_TEST only
Russ Combs [Fri, 31 Oct 2014 21:10:51 +0000 (17:10 -0400)] 
nhttp no longer REG_TEST only

10 years agoMerge branch 'master' of 10.6.12.29:/nfs/home/thopeter/Pub/Snort++
Russ Combs [Fri, 31 Oct 2014 20:58:34 +0000 (16:58 -0400)] 
Merge branch 'master' of 10.6.12.29:/nfs/home/thopeter/Pub/Snort++

10 years agofixed classtype segfault on ctor after parse error
Russ Combs [Fri, 31 Oct 2014 20:57:48 +0000 (16:57 -0400)] 
fixed classtype segfault on ctor after parse error

10 years agofixed parsing of reference with \;
rcombs [Fri, 31 Oct 2014 20:45:46 +0000 (16:45 -0400)] 
fixed parsing of reference with \;

10 years agotweaks
Russ Combs [Fri, 31 Oct 2014 20:00:51 +0000 (16:00 -0400)] 
tweaks

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Fri, 31 Oct 2014 18:59:35 +0000 (13:59 -0500)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

10 years agoIP6 Frag working. Still have an extra IP6 alert from a rebuilt IP6 Frag.
Josh [Fri, 31 Oct 2014 18:56:13 +0000 (13:56 -0500)] 
IP6 Frag working.  Still have an extra IP6 alert from a rebuilt IP6 Frag.

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
Tom Peters [Fri, 31 Oct 2014 14:31:43 +0000 (10:31 -0400)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years agotweaked inspector execution
Russ Combs [Fri, 31 Oct 2014 08:51:52 +0000 (04:51 -0400)] 
tweaked inspector execution

10 years agochange log update
rcombs [Fri, 31 Oct 2014 00:36:56 +0000 (20:36 -0400)] 
change log update

10 years agoMerge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs
rcombs [Fri, 31 Oct 2014 00:32:15 +0000 (20:32 -0400)] 
Merge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs

10 years agosquelch 129:9 and 129:10 if swapped
rcombs [Fri, 31 Oct 2014 00:31:55 +0000 (20:31 -0400)] 
squelch 129:9 and 129:10 if swapped

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Fri, 31 Oct 2014 00:11:48 +0000 (19:11 -0500)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

10 years agominor fixes. enum still contains its original string
Josh [Fri, 31 Oct 2014 00:11:14 +0000 (19:11 -0500)] 
minor fixes.  enum still contains its original string

10 years agoredisabled new_http_inspect from REG_TEST
rcombs [Thu, 30 Oct 2014 23:57:32 +0000 (19:57 -0400)] 
redisabled new_http_inspect from REG_TEST

10 years agofixing text_log output for IPv4 options
Josh [Thu, 30 Oct 2014 19:54:07 +0000 (14:54 -0500)] 
fixing text_log output for IPv4 options

10 years agofixing two FATAL errors
Josh [Thu, 30 Oct 2014 19:36:10 +0000 (14:36 -0500)] 
fixing two FATAL errors

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Thu, 30 Oct 2014 19:35:00 +0000 (14:35 -0500)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

10 years agotweaked S5_TRACE output
rcombs [Thu, 30 Oct 2014 19:31:00 +0000 (15:31 -0400)] 
tweaked S5_TRACE output

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Thu, 30 Oct 2014 18:28:50 +0000 (13:28 -0500)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
Tom Peters [Thu, 30 Oct 2014 18:22:21 +0000 (14:22 -0400)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years agotcp options logging for reg test disabled
rcombs [Thu, 30 Oct 2014 17:39:40 +0000 (13:39 -0400)] 
tcp options logging for reg test disabled

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
rcombs [Thu, 30 Oct 2014 13:45:59 +0000 (09:45 -0400)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years ago126
Russ Combs [Thu, 30 Oct 2014 13:44:46 +0000 (09:44 -0400)] 
126

10 years agomerge from russ desktop
Russ Combs [Thu, 30 Oct 2014 13:37:49 +0000 (09:37 -0400)] 
merge from russ desktop

10 years agosee changelog
Russ Combs [Thu, 30 Oct 2014 13:36:49 +0000 (09:36 -0400)] 
see changelog

10 years agoMerge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs
rcombs [Thu, 30 Oct 2014 04:25:38 +0000 (00:25 -0400)] 
Merge branch 'master' of 10.6.12.29:/nfs/home/jrosenba/codecs

10 years agofixed bogus 120:3 alerts
rcombs [Thu, 30 Oct 2014 04:23:23 +0000 (00:23 -0400)] 
fixed bogus 120:3 alerts

10 years agotweak 3
Josh [Wed, 29 Oct 2014 22:44:20 +0000 (15:44 -0700)] 
tweak 3

10 years agoanother tweak
Josh [Wed, 29 Oct 2014 22:41:51 +0000 (15:41 -0700)] 
another tweak

10 years agoMerge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Wed, 29 Oct 2014 22:41:43 +0000 (17:41 -0500)] 
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agotweak
Josh [Wed, 29 Oct 2014 22:39:33 +0000 (15:39 -0700)] 
tweak

10 years agoMerge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Wed, 29 Oct 2014 22:39:14 +0000 (17:39 -0500)] 
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agoSnort2Lua: create tcp/ipv4 tables if no arguments provided
Josh [Wed, 29 Oct 2014 22:38:22 +0000 (15:38 -0700)] 
Snort2Lua: create tcp/ipv4 tables if no arguments provided

10 years agoMerge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Wed, 29 Oct 2014 22:36:51 +0000 (17:36 -0500)] 
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agoMerge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Wed, 29 Oct 2014 22:35:53 +0000 (17:35 -0500)] 
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agofixing minor typo in Snort2Lua
Josh [Wed, 29 Oct 2014 22:01:21 +0000 (15:01 -0700)] 
fixing minor typo in Snort2Lua

10 years agoMerge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Wed, 29 Oct 2014 21:58:44 +0000 (16:58 -0500)] 
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agoupdating snort2lua frag3 errors
Josh [Wed, 29 Oct 2014 21:38:30 +0000 (14:38 -0700)] 
updating snort2lua frag3 errors

10 years agoMerge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Wed, 29 Oct 2014 21:36:00 +0000 (16:36 -0500)] 
Merge branch 'codecs' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs...
Josh [Wed, 29 Oct 2014 20:47:00 +0000 (15:47 -0500)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/jrosenba/codecs into codecs

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
Tom Peters [Wed, 29 Oct 2014 20:39:24 +0000 (16:39 -0400)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Wed, 29 Oct 2014 20:36:30 +0000 (15:36 -0500)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

10 years agoMerge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort...
Josh [Wed, 29 Oct 2014 19:45:31 +0000 (12:45 -0700)] 
Merge branch 'master' of ssh://chivas64dev.cm.sourcefire.com/nfs/home/rucombs/Snort++ into codecs

Conflicts:
src/log/log_text.cc

10 years agoupdating TCP option output format. Now reflects Snort's format
Josh [Wed, 29 Oct 2014 19:29:05 +0000 (12:29 -0700)] 
updating TCP option output format.  Now reflects Snort's format

10 years agomerge from josh
rcombs [Wed, 29 Oct 2014 19:23:43 +0000 (15:23 -0400)] 
merge from josh

10 years agofixed tcp options log format
rcombs [Wed, 29 Oct 2014 19:20:55 +0000 (15:20 -0400)] 
fixed tcp options log format

10 years agovarious logging patches
Josh [Wed, 29 Oct 2014 19:19:06 +0000 (12:19 -0700)] 
various logging patches

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
Tom Peters [Wed, 29 Oct 2014 18:06:22 +0000 (14:06 -0400)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years agoalert_fast fix
rcombs [Wed, 29 Oct 2014 17:44:22 +0000 (13:44 -0400)] 
alert_fast fix

10 years agoMerge branch 'master' of /nfs/home/rucombs/Snort++
Tom Peters [Wed, 29 Oct 2014 14:59:06 +0000 (10:59 -0400)] 
Merge branch 'master' of /nfs/home/rucombs/Snort++

10 years agotweaked S5_TRACE output
rcombs [Wed, 29 Oct 2014 12:41:48 +0000 (08:41 -0400)] 
tweaked S5_TRACE output

10 years agostream policy fixes
rcombs [Wed, 29 Oct 2014 12:29:55 +0000 (08:29 -0400)] 
stream policy fixes

10 years agoset default id and priority based on rule class
rcombs [Wed, 29 Oct 2014 11:42:25 +0000 (07:42 -0400)] 
set default id and priority based on rule class