Project

General

Profile

Actions

Documentation #5449

open

userguide: document how suricata processes rules internally

Added by Juliana Fajardini Reichow almost 2 years ago. Updated over 1 year ago.

Status:
In Review
Priority:
Normal
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

Some aspects of how Suricata handles signatures can be a black box, not
being documented anywhere other than the source code itself.

Bring the main aspects to our documentation, so both rule writers and developers
can get a baseline understanding of this.

Actions

Also available in: Atom PDF