From 03374caeab703365ed5a31fdee403a12721aa584 Mon Sep 17 00:00:00 2001 From: Shivani Bhardwaj Date: Fri, 24 Dec 2021 16:51:55 +0530 Subject: [PATCH] dcerpc: use new sticky buffer keywords --- tests/dcerpc/dcerpc-dce-iface-01/test.rules | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/tests/dcerpc/dcerpc-dce-iface-01/test.rules b/tests/dcerpc/dcerpc-dce-iface-01/test.rules index 0aaaac562..9baa643bd 100644 --- a/tests/dcerpc/dcerpc-dce-iface-01/test.rules +++ b/tests/dcerpc/dcerpc-dce-iface-01/test.rules @@ -1 +1 @@ -alert tcp any any -> any [135,139,445,1024:] (msg:"ET POLICY DCERPC SVCCTL OpenSCManagerW Request"; flow:established,to_server; dce_iface:367abb81-9844-35f1-ad32-98f038001003; dce_opnum:15; classtype:bad-unknown; sid:1; rev:1;) +alert tcp any any -> any [135,139,445,1024:] (msg:"ET POLICY DCERPC SVCCTL OpenSCManagerW Request"; flow:established,to_server; dcerpc.iface:367abb81-9844-35f1-ad32-98f038001003; dcerpc.opnum:15; classtype:bad-unknown; sid:1; rev:1;) -- 2.47.2