]> git.ipfire.org Git - thirdparty/suricata.git/commit
detect: add ldap.request.dn
authorAlice Akaki <akakialice@gmail.com>
Tue, 4 Feb 2025 02:37:15 +0000 (22:37 -0400)
committerVictor Julien <victor@inliniac.net>
Fri, 21 Feb 2025 13:57:14 +0000 (14:57 +0100)
commit16dcee46fc8a9f15f07535ff60658492c5c04baa
treecdf7f6589402833b8dd1a3d9af0b042751ede552
parent8f807fcfcf0889c4ab8d657b06066d59f79e2695
detect: add ldap.request.dn

ldap.request.dn matches on LDAPDN from request operations
This keyword maps the following eve fields:
ldap.request.bind_request.name
ldap.request.add_request.entry
ldap.request.search_request.base_object
ldap.request.modify_request.object
ldap.request.del_request.dn
ldap.request.mod_dn_request.entry
ldap.request.compare_request.entry
It is a sticky buffer
Supports prefiltering

Ticket: #7471
doc/userguide/rules/ldap-keywords.rst
rust/src/ldap/detect.rs