Project

General

Profile

Actions

Task #2685

open
VJ VJ

Task #4763: tracking: Suricon brainstorms

SuriCon 2018 brainstorm

Task #2685: SuriCon 2018 brainstorm

Added by Victor Julien over 7 years ago. Updated almost 4 years ago.

Status:
Assigned
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

Meta ticket. Add relations to this ticket for the tickets discussed at SuriCon or created after SuriCon brainstorm.

2017 edition: #2309


Related issues 29 (10 open19 closed)

Related to Suricata - Feature #2684: Add JA3SClosedMats KlepslandActions
Related to Suricata - Feature #2563: Add dump of all headers in http eve-logClosedMaurizio AbbaActions
Related to Suricata - Task #2693: tracking: libsuricataIn ProgressJason IshActions
Related to Suricata - Feature #2561: Add possibility for smtp raw extractionClosedMaurizio AbbaActions
Related to Suricata - Feature #2409: Push signatures without reloading the entire set.RejectedCommunity TicketActions
Related to Suricata - Feature #2694: thresholding: feature parity between global and per-rule optionsClosedTodd MortimerActions
Related to Suricata - Feature #2695: websocket supportClosedPhilippe AntoineActions
Related to Suricata - Feature #2689: http: Normalized HTTP client body bufferClosedJeff LucovskyActions
Related to Suricata - Feature #2696: http: implement parser in rustClosedPhilippe AntoineActions
Related to Suricata - Feature #2486: prefilter/fast_pattern logic for flowbitsClosedVictor JulienActions
Related to Suricata - Feature #2697: prefilter support for stream_sizeClosedPhilippe AntoineActions
Related to Suricata - Feature #2698: hassh and hasshServer for ssh fingerprintingClosedVadym MalakhatkoActions
Related to Suricata - Feature #2282: event log aka weird.logClosedJeff LucovskyActions
Related to Suricata - Task #2278: tracking: failing betterAssignedVictor JulienActions
Related to Suricata - Documentation #2699: document all eve record types and fieldsClosedSascha SteinbissActions
Related to Suricata - Feature #2700: ja3/ja3s functionality for IKEv2AssignedPierre ChifflierActions
Related to Suricata - Feature #2701: flow: counter for allocations at runtimeNewCommunity TicketActions
Related to Suricata - Feature #385: Configuration option to log all known (pcap) data for a stream when an alert firesClosedCommunity TicketActions
Related to Suricata - Feature #2318: matching on large amounts of data with dynamic updatesClosedVictor JulienActions
Related to Suricata - Task #2313: tracking: save & restore state when suricata restartsNewOISF DevActions
Related to Suricata - Feature #2308: threshold/suppress by http_hostAssignedTodd MortimerActions
Related to Suricata - Feature #2283: turn content modifiers into 'sticky buffers'ClosedOISF DevActions
Related to Suricata - Feature #2713: protocol detection w/o protocol parsingClosedPierre ChifflierActions
Related to Suricata - Feature #2754: JA3 and JA3S - sets / reputationClosedVictor JulienActions
Related to Suricata - Feature #2755: vendor id / vid keyword to give rulesets unique sid rangesNewOISF DevActions
Related to Suricata - Feature #2756: rules: input in json formatNewOISF DevActions
Related to Suricata - Task #2757: improve protocol detectionIn ReviewPhilippe AntoineActions
Related to Suricata - Feature #2758: intel / reputation matching on arbitrary dataClosedVictor JulienActions
Related to Suricata - Feature #2759: iprep: more granularityNewCommunity TicketActions

VJ Updated by Victor Julien over 7 years ago Actions #1

VJ Updated by Victor Julien over 7 years ago Actions #2

  • Related to Feature #2563: Add dump of all headers in http eve-log added

VJ Updated by Victor Julien over 7 years ago Actions #3

  • Related to Task #2693: tracking: libsuricata added

VJ Updated by Victor Julien over 7 years ago Actions #4

  • Related to Feature #2561: Add possibility for smtp raw extraction added

VJ Updated by Victor Julien over 7 years ago Actions #5

  • Related to Feature #2409: Push signatures without reloading the entire set. added

VJ Updated by Victor Julien over 7 years ago Actions #6

  • Related to Feature #2694: thresholding: feature parity between global and per-rule options added

VJ Updated by Victor Julien over 7 years ago Actions #7

VJ Updated by Victor Julien over 7 years ago Actions #8

  • Related to Feature #2689: http: Normalized HTTP client body buffer added

VJ Updated by Victor Julien over 7 years ago Actions #9

VJ Updated by Victor Julien over 7 years ago Actions #10

  • Related to Feature #2486: prefilter/fast_pattern logic for flowbits added

VJ Updated by Victor Julien over 7 years ago Actions #11

  • Related to Feature #2697: prefilter support for stream_size added

VJ Updated by Victor Julien over 7 years ago Actions #12

  • Related to Feature #2698: hassh and hasshServer for ssh fingerprinting added

VJ Updated by Victor Julien over 7 years ago Actions #13

VJ Updated by Victor Julien over 7 years ago Actions #14

  • Related to Task #2278: tracking: failing better added

VJ Updated by Victor Julien over 7 years ago Actions #15

VJ Updated by Victor Julien over 7 years ago Actions #16

  • Related to Feature #2700: ja3/ja3s functionality for IKEv2 added

VJ Updated by Victor Julien over 7 years ago Actions #17

  • Related to Feature #2701: flow: counter for allocations at runtime added

VJ Updated by Victor Julien over 7 years ago Actions #18

  • Related to Feature #385: Configuration option to log all known (pcap) data for a stream when an alert fires added

VJ Updated by Victor Julien over 7 years ago Actions #19

  • Related to Feature #2318: matching on large amounts of data with dynamic updates added

VJ Updated by Victor Julien over 7 years ago Actions #20

  • Related to Task #2313: tracking: save & restore state when suricata restarts added

VJ Updated by Victor Julien over 7 years ago Actions #21

  • Related to Feature #2308: threshold/suppress by http_host added

VJ Updated by Victor Julien over 7 years ago Actions #22

  • Related to Feature #2283: turn content modifiers into 'sticky buffers' added

VJ Updated by Victor Julien over 7 years ago Actions #23

  • Related to Feature #2713: protocol detection w/o protocol parsing added

VJ Updated by Victor Julien over 7 years ago Actions #24

  • Related to Feature #2754: JA3 and JA3S - sets / reputation added

VJ Updated by Victor Julien over 7 years ago Actions #25

  • Related to Feature #2755: vendor id / vid keyword to give rulesets unique sid ranges added

VJ Updated by Victor Julien over 7 years ago Actions #26

VJ Updated by Victor Julien over 7 years ago Actions #27

  • Related to Task #2757: improve protocol detection added

VJ Updated by Victor Julien over 7 years ago Actions #28

  • Related to Feature #2758: intel / reputation matching on arbitrary data added

VJ Updated by Victor Julien over 7 years ago Actions #29

AH Updated by Andreas Herz almost 7 years ago Actions #30

  • Target version set to TBD

VJ Updated by Victor Julien almost 6 years ago Actions #31

  • Tracker changed from Support to Task
  • Target version set to TBD

VJ Updated by Victor Julien over 4 years ago Actions #32

  • Parent task set to #4763

VJ Updated by Victor Julien almost 4 years ago Actions #33

  • Status changed from New to Assigned
Actions

Also available in: PDF Atom