[Oisf-devel] Does suricata support parsing QUIC?

SJ Lee bluebike.sjlee at gmail.com
Thu Sep 27 17:56:41 UTC 2018


Hello Victor,
I was curious Suricata able to analyze QUIC protocol or not, and able to
detect rules properly.

Thanks,

On Thu, Mar 29, 2018 at 2:56 AM Victor Julien <lists at inliniac.net> wrote:

> On 28-03-18 21:05, SJ Lee wrote:
> > I would like to know that Suricata support parsing Quic protocol or not.
> >
> >
> > "The Quic protocol (Quick UDP Internet Connections) is a experimental
> > protocol designed by Google that its goal is to improve perceived
> > performance of connection-oriented web applications that are currently
> > using TCP."
> >
>
> There is no specific support for QUIC in Suricata. I've looked a little
> bit into it when doing the first tests with Rust, but that didn't lead
> to any merged code.
>
> What kind of support are you looking for?
>
> --
> ---------------------------------------------
> Victor Julien
> http://www.inliniac.net/
> PGP: http://www.inliniac.net/victorjulien.asc
> ---------------------------------------------
>
> _______________________________________________
> Suricata IDS Devel mailing list: oisf-devel at openinfosecfoundation.org
> Site: http://suricata-ids.org | Participate:
> http://suricata-ids.org/participate/
> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-devel
> Redmine: https://redmine.openinfosecfoundation.org/
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-devel/attachments/20180927/51960a71/attachment.html>


More information about the Oisf-devel mailing list