Actions
Bug #7521
opendetect/ip-only: false positive alerts on pseudo packets ending a one direction flow
Affected Versions:
Effort:
Difficulty:
Label:
Description
If a single direction flow leads to a flow timeout packet in the opposite direction, IP-only inspection is done on that pseudo packet as if it is a real packet, leading to false positive alerts.
Updated by OISF Ticketbot about 1 month ago
- Label deleted (
Needs backport to 7.0)
Updated by Victor Julien about 1 month ago
- Status changed from In Progress to In Review
Updated by Victor Julien 5 days ago
- Status changed from In Review to Resolved
Actions