Actions
Bug #7521
closed
VJ
VJ
detect/ip-only: false positive alerts on pseudo packets ending a one direction flow
Bug #7521:
detect/ip-only: false positive alerts on pseudo packets ending a one direction flow
Affected Versions:
Effort:
Difficulty:
Label:
Description
If a single direction flow leads to a flow timeout packet in the opposite direction, IP-only inspection is done on that pseudo packet as if it is a real packet, leading to false positive alerts.
OT Updated by OISF Ticketbot about 1 year ago
- Subtask #7522 added
OT Updated by OISF Ticketbot about 1 year ago
- Label deleted (
Needs backport to 7.0)
VJ Updated by Victor Julien about 1 year ago
- Status changed from In Progress to In Review
VJ Updated by Victor Julien about 1 year ago
- Status changed from In Review to Resolved
VJ Updated by Victor Julien 8 months ago
- Subtask deleted (
#7522)
VJ Updated by Victor Julien 8 months ago
- Related to Bug #7522: detect/ip-only: false positive alerts on pseudo packets ending a one direction flow (7.0.x backport) added
VJ Updated by Victor Julien 8 months ago
- Status changed from Resolved to Closed
Actions