Project

General

Profile

Actions

Feature #1344

closed

OOBE -2- decreasing the default flow-timeouts (at least for TCP)

Added by Peter Manev over 9 years ago. Updated almost 8 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

This is part of OOBE tickets line.
Out Of the Box Experience(OOBE) is aimed at providing better defaults values in suricata.yaml

Suggested:

flow-timeouts:

  default:

    new: 5

    established: 300

    closed: 0

    emergency-new: 5

    emergency-established: 100

    emergency-closed: 0

  tcp:

    new: 5

    established: 360

    closed: 5

    emergency-new: 3

    emergency-established: 300

    emergency-closed: 2

  udp:

    new: 10

    established: 300

    emergency-new: 5

    emergency-established: 100

  icmp:

    new: 10

    established: 300

    emergency-new: 5

    emergency-established: 100

Actions #1

Updated by Andreas Herz about 8 years ago

  • Assignee set to OISF Dev
  • Target version set to 70
Actions #2

Updated by Victor Julien almost 8 years ago

  • Status changed from New to Closed
  • Assignee changed from OISF Dev to Victor Julien
  • Target version changed from 70 to 3.1rc1
Actions

Also available in: Atom PDF