[Oisf-devel] [COMMIT] OISF branch, master, updated. suricata-1.4-244-g16edbfd

noreply at openinfosecfoundation.org noreply at openinfosecfoundation.org
Thu Jun 27 16:22:06 UTC 2013


This is an automated email from the git hooks/post-receive script. It was
generated because a ref change was pushed to the repository containing
the project "OISF".

The branch, master has been updated
       via  16edbfd4ea1181fe726223b97ed8cd0db7529612 (commit)
       via  571b8ac186505d01789ac3eb22df9919e13d32c4 (commit)
       via  9dc04d9fabead421efb06786b13057c36b711bed (commit)
       via  72e35efbc697d45f4785615457e44b6c1dcb0f8f (commit)
       via  28a6c1d9f8c47695081ec850e72a22417aedde4c (commit)
       via  6645620c03634081886885d0be34577a75c71bda (commit)
       via  43ba5a677e028ef211d1edf159bed37505cb2de4 (commit)
       via  4817e1305ff82c980156098faed8505f233678d4 (commit)
       via  4f20f72f4d1cba9f3403f9dc8f6bad9bd6f63228 (commit)
       via  e567e12230ee248f97beddc3ea0e908b598b125b (commit)
       via  f10dd603ff42201ec931c33325327d1bdce00e18 (commit)
       via  6674f4892ca3ebfc993c315f2d73f9e3d3b72be1 (commit)
       via  59780ca77020ac71f6bbc05d69a91136f91696ee (commit)
       via  8e01cba85da67941da0753094b0ab03257ed70aa (commit)
      from  4521de2dfd334074d83e730c82a39e2590a06de5 (commit)

Those revisions listed above that are new to this repository have
not appeared on any other notification email; so we list those
revisions in full, below.

- Log -----------------------------------------------------------------
commit 16edbfd4ea1181fe726223b97ed8cd0db7529612
Author: Victor Julien <victor at inliniac.net>
Date:   Thu Jun 27 18:21:30 2013 +0200

    DNS: disable logging by default

commit 571b8ac186505d01789ac3eb22df9919e13d32c4
Author: Victor Julien <victor at inliniac.net>
Date:   Thu May 2 12:01:07 2013 +0200

    DNS: add support for per TX decoder events.

commit 9dc04d9fabead421efb06786b13057c36b711bed
Author: Victor Julien <victor at inliniac.net>
Date:   Thu May 2 12:00:40 2013 +0200

    app layer: add support for per TX decoder events

commit 72e35efbc697d45f4785615457e44b6c1dcb0f8f
Author: Victor Julien <victor at inliniac.net>
Date:   Wed Apr 24 14:59:30 2013 +0200

    Reset app layer events when we start inspecting a new TX

commit 28a6c1d9f8c47695081ec850e72a22417aedde4c
Author: Victor Julien <victor at inliniac.net>
Date:   Wed Apr 24 14:02:53 2013 +0200

    DNS: add test for app layer event match

commit 6645620c03634081886885d0be34577a75c71bda
Author: Victor Julien <victor at inliniac.net>
Date:   Tue Apr 23 16:35:13 2013 +0200

    Merge SIG_FLAG_MPM_HTTP and SIG_FLAG_MPM_DNS into SIG_FLAG_MPM_APPLAYER, do the same for the _NEG variant.

commit 43ba5a677e028ef211d1edf159bed37505cb2de4
Author: Victor Julien <victor at inliniac.net>
Date:   Tue Apr 23 16:19:26 2013 +0200

    DNS: enable mpm/fast_pattern support for dns_query

commit 4817e1305ff82c980156098faed8505f233678d4
Author: Victor Julien <victor at inliniac.net>
Date:   Sun Apr 21 13:34:55 2013 +0200

    DNS: add /F modifier to pcre to inspect DNS query name

commit 4f20f72f4d1cba9f3403f9dc8f6bad9bd6f63228
Author: Victor Julien <victor at inliniac.net>
Date:   Sat Apr 20 19:38:43 2013 +0200

    DNS: add event rules file

commit e567e12230ee248f97beddc3ea0e908b598b125b
Author: Victor Julien <victor at inliniac.net>
Date:   Sun Apr 21 13:12:03 2013 +0200

    DNS: add unittests for UDP and TCP for dns_query keyword

commit f10dd603ff42201ec931c33325327d1bdce00e18
Author: Victor Julien <victor at inliniac.net>
Date:   Sat Apr 20 19:37:05 2013 +0200

    DNS: adding dns_request content modifier

commit 6674f4892ca3ebfc993c315f2d73f9e3d3b72be1
Author: Victor Julien <victor at inliniac.net>
Date:   Sat Apr 20 17:40:14 2013 +0200

    DNS: add per tx internal id
    
    Add per TX id. Rename transaction_cnt to transaction_max (id) and increment it on tx creation.

commit 59780ca77020ac71f6bbc05d69a91136f91696ee
Author: Victor Julien <victor at inliniac.net>
Date:   Mon Mar 25 17:19:54 2013 +0100

    Hacks to enable alert dns even though we have dnstcp and dnsudp parsers. Needs proper solution later.

commit 8e01cba85da67941da0753094b0ab03257ed70aa
Author: Victor Julien <victor at inliniac.net>
Date:   Fri Feb 22 18:17:49 2013 +0100

    DNS TCP and UDP parser and DNS response logger

-----------------------------------------------------------------------

Summary of changes:
 rules/dns.rules                                  |   11 +
 src/Makefile.am                                  |    6 +
 src/app-layer-dns-common.c                       |  673 ++++++++++++++
 src/app-layer-dns-common.h                       |  189 ++++
 src/app-layer-dns-tcp.c                          |  654 +++++++++++++
 src/{app-layer-dcerpc.h => app-layer-dns-tcp.h}  |   26 +-
 src/app-layer-dns-udp.c                          |  377 ++++++++
 src/{app-layer-dcerpc.h => app-layer-dns-udp.h}  |   25 +-
 src/app-layer-parser.c                           |   78 ++
 src/app-layer-parser.h                           |    6 +
 src/app-layer-protos.c                           |    4 +
 src/app-layer-protos.h                           |    5 +
 src/decode-events.h                              |   43 +
 src/detect-app-layer-event.c                     |   54 +-
 src/detect-dns-query.c                           | 1066 ++++++++++++++++++++++
 src/{alert-debuglog.h => detect-dns-query.h}     |   16 +-
 src/detect-engine-analyzer.c                     |    2 +
 src/detect-engine-content-inspection.h           |    1 +
 src/detect-engine-dns.c                          |   94 ++
 src/{runmode-nfq.h => detect-engine-dns.h}       |   16 +-
 src/detect-engine-mpm.c                          |  141 +++-
 src/detect-engine-mpm.h                          |    1 +
 src/detect-engine-state.c                        |   28 +-
 src/detect-engine-state.h                        |    1 +
 src/detect-engine.c                              |   24 +
 src/detect-fast-pattern.c                        |   11 +-
 src/detect-parse.c                               |   26 +-
 src/detect-pcre.c                                |   55 ++
 src/detect-pcre.h                                |    2 +
 src/detect.c                                     |   70 ++-
 src/detect.h                                     |   11 +-
 src/log-dnslog.c                                 |  479 ++++++++++
 src/{detect-luajit-extensions.h => log-dnslog.h} |   17 +-
 src/suricata-common.h                            |    1 +
 src/suricata.c                                   |    8 +
 src/tm-modules.c                                 |    4 +
 src/tm-threads-common.h                          |    1 +
 src/util-error.c                                 |    1 +
 src/util-error.h                                 |    1 +
 src/util-profiling.c                             |    1 +
 suricata.yaml.in                                 |    7 +
 41 files changed, 4111 insertions(+), 125 deletions(-)
 create mode 100644 rules/dns.rules
 create mode 100644 src/app-layer-dns-common.c
 create mode 100644 src/app-layer-dns-common.h
 create mode 100644 src/app-layer-dns-tcp.c
 copy src/{app-layer-dcerpc.h => app-layer-dns-tcp.h} (64%)
 create mode 100644 src/app-layer-dns-udp.c
 copy src/{app-layer-dcerpc.h => app-layer-dns-udp.h} (64%)
 create mode 100644 src/detect-dns-query.c
 copy src/{alert-debuglog.h => detect-dns-query.h} (64%)
 create mode 100644 src/detect-engine-dns.c
 copy src/{runmode-nfq.h => detect-engine-dns.h} (64%)
 create mode 100644 src/log-dnslog.c
 copy src/{detect-luajit-extensions.h => log-dnslog.h} (71%)


hooks/post-receive
-- 
OISF


More information about the Oisf-devel mailing list