Actions
Bug #3421
closedreject support break udp packets( like DNS deception)
Status:
Closed
Priority:
Normal
Assignee:
-
Target version:
-
Affected Versions:
Effort:
Difficulty:
Label:
Description
we use suricata work as ids. i reject a lot of signatures, it work good about TCPs. help us solve many problems.
we find lot's of troubles can use dns to deal .
so i think : suricata can deception DNS by the time 'reject dns any any <> any any ...' ,it will solve many problems.
Actions