Project

General

Profile

Actions

Task #7452

open

ldap: add keywords to match output

Added by Philippe Antoine about 2 months ago. Updated 10 days ago.

Status:
New
Priority:
High
Target version:
Effort:
Difficulty:
Label:

Subtasks 3 (2 open1 closed)

Feature #7453: ldap: add ldap.request.operation and ldap.response.operation keywordsClosedAlice da Silva AkakiActions
Feature #7470: detect: add ldap.bind.version keywordNewAlice da Silva AkakiActions
Feature #7471: detect/ldap: add ldap.distinguished_name keywords for request and responseIn ProgressAlice da Silva AkakiActions

Related issues 11 (9 open2 closed)

Related to Suricata - Feature #1199: protocol: LDAP supportClosedGiuseppe LongoActions
Related to Suricata - Feature #7477: ldap: add support for AbandonRequestClosedAlice da Silva AkakiActions
Related to Suricata - Feature #7535: detect: add ldap.search_request.filter and also log the filterNewAlice da Silva AkakiActions
Related to Suricata - Feature #7539: detect: add keyword ldap.mod_dn_request.new_rdnNewAlice da Silva AkakiActions
Blocks Suricata - Story #6597: rules: improve rules keyword/output parityNewVictor JulienActions
Blocked by Suricata - Feature #7532: detect: add keywords for LDAPResultNewAlice da Silva AkakiActions
Blocked by Suricata - Feature #7533: detect: add ldap.request.attribute_type and ldap.request.attribute keywords, and same for responsesNewOISF DevActions
Blocked by Suricata - Feature #7534: detect: add ldap.request.message_id and ldap.responses.message_idNewAlice da Silva AkakiActions
Blocked by Suricata - Feature #7536: detect: add keywords for BindRequestNewAlice da Silva AkakiActions
Blocked by Suricata - Feature #7537: detect: add keywords for SearchRequestNewAlice da Silva AkakiActions
Blocked by Suricata - Feature #7538: detect: keyword ldap.modify_request.operationNewAlice da Silva AkakiActions
Actions

Also available in: Atom PDF