Project

General

Profile

Actions

Bug #3421

closed

reject support break udp packets( like DNS deception)

Added by KingJJ wang over 4 years ago. Updated 11 months ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Target version:
-
Affected Versions:
Effort:
Difficulty:
Label:

Description

we use suricata work as ids. i reject a lot of signatures, it work good about TCPs. help us solve many problems.

we find lot's of troubles can use dns to deal .
so i think : suricata can deception DNS by the time 'reject dns any any <> any any ...' ,it will solve many problems.

Actions

Also available in: Atom PDF