From: Anoop Saldanha Date: Mon, 19 Aug 2013 05:36:30 +0000 (+0530) Subject: alert ipv4 and alert ipv6 specified proto rules should be treated and PROTO_ANY just... X-Git-Tag: suricata-2.0beta2~289 X-Git-Url: http://git.ipfire.org/gitweb.cgi?a=commitdiff_plain;h=6eb8f66f0ae6bac3891c9716cb9380138eb6c793;p=thirdparty%2Fsuricata.git alert ipv4 and alert ipv6 specified proto rules should be treated and PROTO_ANY just like how we treat alert ip rules. --- diff --git a/src/detect-engine-proto.c b/src/detect-engine-proto.c index 14b89ee4f1..7e3e097c05 100644 --- a/src/detect-engine-proto.c +++ b/src/detect-engine-proto.c @@ -118,11 +118,13 @@ int DetectProtoParse(DetectProto *dp, char *str) } else if (strcasecmp(str,"ipv4") == 0 || strcasecmp(str,"ip4") == 0 ) { dp->flags |= DETECT_PROTO_IPV4; + dp->flags |= DETECT_PROTO_ANY; memset(dp->proto, 0xff, sizeof(dp->proto)); SCLogDebug("IPv4 protocol detected"); } else if (strcasecmp(str,"ipv6") == 0 || strcasecmp(str,"ip6") == 0 ) { dp->flags |= DETECT_PROTO_IPV6; + dp->flags |= DETECT_PROTO_ANY; memset(dp->proto, 0xff, sizeof(dp->proto)); SCLogDebug("IPv6 protocol detected"); } else if (strcasecmp(str,"ip") == 0 ||