Project

General

Profile

Actions

Bug #1664

closed

Unreplied DNS queries not logged when flow is aged out

Added by Ray Ruvinskiy over 8 years ago. Updated almost 8 years ago.

Status:
Closed
Priority:
High
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

If a DNS query is not followed by a response before the flow is timed out, the DNS transaction is not logged at all. I was wondering if there's a way to trigger the tx logging before the flow is flushed out.

This is observed with suricata 3.0RC1.


Related issues 1 (0 open1 closed)

Related to Suricata - Bug #1419: DNS transaction handling issuesClosedJason Ish03/17/2015Actions
Actions

Also available in: Atom PDF