]> git.ipfire.org Git - thirdparty/suricata.git/commitdiff
smb: winreg is a DCERPC facility
authorVictor Julien <victor@inliniac.net>
Mon, 2 Dec 2019 19:57:59 +0000 (20:57 +0100)
committerVictor Julien <victor@inliniac.net>
Mon, 9 Dec 2019 19:12:03 +0000 (20:12 +0100)
rust/src/smb/smb.rs

index ca9e357dbce4e5530d10e87456bea0aba2fcf2a0..b38105222415f7b563ccccc15c4e3c09bbe5b612 100644 (file)
@@ -1128,6 +1128,7 @@ impl SMBState {
                     Ok("lsarpc") => ("lsarpc", true),
                     Ok("samr") => ("samr", true),
                     Ok("spoolss") => ("spoolss", true),
+                    Ok("winreg") => ("winreg", true),
                     Ok("suricata::dcerpc") => ("unknown", true),
                     Err(_) => ("MALFORMED", false),
                     Ok(&_) => {