Project

General

Profile

Actions

Feature #1794

open

test suricata rules over unix-socket

Added by Thibault Marquand over 5 years ago. Updated almost 2 years ago.

Status:
New
Priority:
Normal
Target version:
Effort:
medium
Difficulty:
high
Label:

Description

It would be nice to be able to test configuration files/rules file through the unix socket.
Basically, to be able to get the result (output and exitcode) of :

suricata -T -c config_file [-S rule_file]

But through the unix socket.
Software such Scirius could then test rules over the unix socket and not with a local suricata binary.

It is somehow related to #1458

Actions #1

Updated by Victor Julien over 5 years ago

  • Status changed from New to Assigned
  • Assignee set to Eric Leblond
  • Target version set to TBD

One for you Eric?

Actions #2

Updated by Victor Julien over 3 years ago

  • Effort set to medium
  • Difficulty set to high

I think this isn't trivial due to how current rule loading code also sets up threads which shouldn't be done for a test mode.

Actions #3

Updated by Victor Julien over 2 years ago

  • Assignee changed from Eric Leblond to Community Ticket
Actions #4

Updated by Victor Julien almost 2 years ago

  • Status changed from Assigned to New
Actions

Also available in: Atom PDF