[Oisf-users] Save packets after alert: tag keywoard or smth else?

oleg gv oagvozd at gmail.com
Mon Aug 22 12:49:56 UTC 2016


Hello
Snort can tag traffic after alert and then log some packets after alert to
analize after.

Is this possibility exists in Suricata ? I can't find it. May be patch
exists ?

Thanks.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20160822/138f0e39/attachment.html>


More information about the Oisf-users mailing list