Task #3288


Task #4763: tracking: Suricon brainstorms

Suricon 2019 brainstorm

Added by Victor Julien over 3 years ago. Updated 12 months ago.

Target version:


Meta ticket. Add relations to this ticket for the tickets discussed at SuriCon or created after SuriCon 2019 brainstorm.

Related issues 25 (19 open6 closed)

Related to Feature #2409: Push signatures without reloading the entire set.RejectedCommunity TicketActions
Related to Feature #2486: prefilter/fast_pattern logic for flowbitsIn ProgressVictor JulienActions
Related to Task #3307: Research: evaluate future of lua support in SuricataNewOISF DevActions
Related to Feature #3306: Support AF_XDP capture methodClosedRichard McConnellActions
Related to Optimization #3305: Tracking ticket: which parts of the engine should be dynamicNewCommunity TicketActions
Related to Optimization #3304: generic way to register buffers for logging and detectionNewOISF DevActions
Related to Documentation #3303: Add a documentation about the used sid and gid rangesNewOISF DevActions
Related to Task #3302: Research: ruleset optimizationsNewCommunity TicketActions
Related to Task #3301: Research: Failover support within the current IPS implementationNewCommunity TicketActions
Related to Task #3300: Tracking: Add support for medical protocolsNewCommunity TicketActions
Related to Task #3299: Tracking: Add support for industrial protocolNewCommunity TicketActions
Related to Feature #3297: more verbose dcerpc loggingClosedShivani BhardwajActions
Related to Feature #3296: Include in the fileinfo if it was a duplicateFeedbackCommunity TicketActions
Related to Feature #3295: Unix socket: support to receive flow shunting informationNewCommunity TicketActions
Related to Task #3294: Test the maximum size for messages passed to the unix socketNewJason IshActions
Related to Feature #3293: eve: per thread output filesClosedJeff LucovskyActions
Related to Feature #3292: support for network service header (NSH)ClosedCarl SmithActions
Related to Task #3291: collect common mistakes rulewriters might run intoFeedbackCommunity TicketActions
Related to Feature #2280: http: rules that match both request and responseAssignedVictor JulienActions
Related to Feature #3316: Unix socket: support dumping flow tableFeedbackCommunity TicketActions
Related to Optimization #2272: Analyze DNS response if query is not presentAssignedJason IshActions
Related to Feature #660: Update host policy from unix socketRejectedActions
Related to Task #3318: Research: NUMA awarenessAssignedVictor JulienActions
Related to Feature #2281: tcp stream: simpler IDS handling of overlap evasionsAssignedVictor JulienActions
Related to Task #3329: Research: WASM as a Lua alternative and for dynamically loadable modulesAssignedJason IshActions

Also available in: Atom PDF