<html><head><meta http-equiv="Content-Type" content="text/html; charset=UTF-8"></head><body>Hi,<div>Already fixed on patch #505.</div><div>Thx you Anoop!</div><div>Regards</div><div>Rmkml</div><div><br></div></body></html><br><br>
-------- Original message --------
Subject: http_user_agent and depth/offset request
From: rmkml@yahoo.fr
To: oisf-devel@openinfosecfoundation.org
CC: rmkml@yahoo.fr
<br><br><body>Hi,<div>Same than previously reported for cookie,</div><div>new http_user_agent have same pb when used with too short depth content like this :</div><div><br></div><div>... flow:to_server,establishment; content:"abcd"; nocase; http_user_agent; depth:3; offset:0;</div><div><br></div><div>Suricata fire but not warn user than depth value are too short.</div><div><br></div><div>Someone check / test please ? If yes Im open a new redmine ticket.</div><div>Regards</div><div>Rmkml</div><div><br></div> </body>