Project

General

Profile

Task #2879

Log a warning on duplicate SID.

Added by Jason Ish 12 days ago. Updated 11 days ago.

Status:
Assigned
Priority:
Normal
Assignee:
-
Target version:
-
Effort:
low
Difficulty:
low
Label:
Beginner, Outreachy

Description

Currently when suricata-update encounters a rules with duplicate SIDs, it will silently use the one with the higher revision. While I believe this behaviour is correct, we should still log a warning.

On duplicate SID we should probably log the following as warnings:
- If revisions differ: Found duplicate rule ID %d, keeping one with higher revision.
- If revisions are equals: Found duplicate rule ID %s, keeping existing rule.

History

#1

Updated by Shivani Bhardwaj 11 days ago

  • Assignee deleted (Shivani Bhardwaj)
#2

Updated by Shivani Bhardwaj 11 days ago

  • Status changed from New to Assigned

Also available in: Atom PDF