[Oisf-users] Suricata SMB log features

Victor Julien lists at inliniac.net
Tue Apr 2 07:23:35 UTC 2013


On 03/26/2013 11:44 AM, Roberto Martelloni wrote:
> Hello,
> 
> I've found in the roadmap for Suricata 2.0 that following features:
> 
>   * Feature #646: smb log feature to be introduced
>   * Feature #719: finish/enable smb2 app layer parser
> 
> What kind of log feature will be available, can I have more details
> about that ?
> What information will be extracted from SMB protocol ?
> For which version of the protocol that log features will be available (
> SMBv1, SMBv2, SMBv3 ) ?

What we have in mind is something similar to our HTTP support. But it's
still vague at this point.

> Is there an estimate date of release for Suricata 2.0 ? 

No, I'm hoping before summer, but thats rather vague as well :)

-- 
---------------------------------------------
Victor Julien
http://www.inliniac.net/
PGP: http://www.inliniac.net/victorjulien.asc
---------------------------------------------



More information about the Oisf-users mailing list