From: Shivani Bhardwaj Date: Fri, 24 Dec 2021 11:21:55 +0000 (+0530) Subject: dcerpc: use new sticky buffer keywords X-Git-Tag: suricata-6.0.5~29 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=03374caeab703365ed5a31fdee403a12721aa584;p=thirdparty%2Fsuricata-verify.git dcerpc: use new sticky buffer keywords --- diff --git a/tests/dcerpc/dcerpc-dce-iface-01/test.rules b/tests/dcerpc/dcerpc-dce-iface-01/test.rules index 0aaaac562..9baa643bd 100644 --- a/tests/dcerpc/dcerpc-dce-iface-01/test.rules +++ b/tests/dcerpc/dcerpc-dce-iface-01/test.rules @@ -1 +1 @@ -alert tcp any any -> any [135,139,445,1024:] (msg:"ET POLICY DCERPC SVCCTL OpenSCManagerW Request"; flow:established,to_server; dce_iface:367abb81-9844-35f1-ad32-98f038001003; dce_opnum:15; classtype:bad-unknown; sid:1; rev:1;) +alert tcp any any -> any [135,139,445,1024:] (msg:"ET POLICY DCERPC SVCCTL OpenSCManagerW Request"; flow:established,to_server; dcerpc.iface:367abb81-9844-35f1-ad32-98f038001003; dcerpc.opnum:15; classtype:bad-unknown; sid:1; rev:1;)