Project

General

Profile

Actions

Feature #6496

closed
JI JI

dns: new detection buffer: dns.answer.name

Feature #6496: dns: new detection buffer: dns.answer.name

Added by Jason Ish over 2 years ago. Updated over 2 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

Add a new buffer, dns.answer.name to allow content matches on the "name" field in the DNS answers array.

JI Updated by Jason Ish over 2 years ago Actions #1

  • Status changed from In Progress to In Review

JI Updated by Jason Ish over 2 years ago Actions #2

  • Blocks Bug #6281: dns: structure of query differs between "alert" and "dns" event types added

JI Updated by Jason Ish over 2 years ago Actions #3

  • Status changed from In Review to Closed

Merged.

JI Updated by Jason Ish over 2 years ago Actions #4

  • Blocks deleted (Bug #6281: dns: structure of query differs between "alert" and "dns" event types)
Actions

Also available in: PDF Atom