]> git.ipfire.org Git - thirdparty/suricata.git/commitdiff
tls-log: log certificate serial number
authorMats Klepsland <mats.klepsland@gmail.com>
Tue, 17 Jan 2017 08:22:10 +0000 (09:22 +0100)
committerVictor Julien <victor@inliniac.net>
Tue, 21 Feb 2017 08:57:55 +0000 (09:57 +0100)
src/log-tlslog.c

index 113a2ccd3bccf4c84955ffd19f7a2813371b77b6..fc1deddae309a48a4d333714b66969ee00bbc7a1 100644 (file)
@@ -86,6 +86,9 @@ static void LogTlsLogExtended(LogTlsLogThread *aft, SSLState * state)
     if (state->client_connp.sni != NULL) {
         MemBufferWriteString(aft->buffer, " SNI='%s'", state->client_connp.sni);
     }
+    if (state->server_connp.cert0_serial != NULL) {
+        MemBufferWriteString(aft->buffer, " SERIAL='%s'", state->server_connp.cert0_serial);
+    }
     switch (state->server_connp.version) {
         case TLS_VERSION_UNKNOWN:
             MemBufferWriteString(aft->buffer, " VERSION='UNDETERMINED'");