[Oisf-devel] Beginners Guide to Suricata Development

Murali Kandula muralispruce at gmail.com
Mon Jul 1 16:34:13 UTC 2019


Hi Andreas,

Thanks for the link. I currently want to work on the following.

1) HASSH detection and extraction.
2) Store payload data(if payload data exist) when alert is triggered.

I would your suggestions on how to find the best way to understand the flow
of a session in Suricata i.e., from the detection of the protocol to
generation of an alert.

Murali

On Sun, Jun 30, 2019 at 2:49 PM Andreas Herz <aherz at oisf.net> wrote:

> Hi Murali,
>
> On 26/06/19 at 10:11, Murali Kandula wrote:
> > I am looking for steps to setup Suricata for development purposes and
> also
> > looking for the best way to understand the code.
>
> Did you look into this documentation?
>
>
> https://redmine.openinfosecfoundation.org/projects/suricata/wiki/Suricata_Developers_Guide
>
> Do you have specific parts you want to work on?
>
> --
> Andreas Herz
> _______________________________________________
> Suricata IDS Devel mailing list: oisf-devel at openinfosecfoundation.org
> Site: http://suricata-ids.org | Participate:
> http://suricata-ids.org/participate/
> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-devel
> Redmine: https://redmine.openinfosecfoundation.org/
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-devel/attachments/20190701/fe4f23cd/attachment.html>


More information about the Oisf-devel mailing list