Project

General

Profile

Actions

Feature #8425

closed
JI JI

ntp: add ntp transaction logging

Feature #8425: ntp: add ntp transaction logging

Added by Jason Ish about 2 months ago. Updated 28 days ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

NTP is missing a transaction logger. Due to the chattiness of NTP it should probably be disabled by default. The main use case would be for adding NTP metadata to an alert.


Related issues 5 (0 open5 closed)

Related to Suricata - Feature #8429: rules: add ntp.mode keywordClosedJason IshActions
Related to Suricata - Feature #8430: rules: add ntp.version keywordClosedJason IshActions
Related to Suricata - Feature #8431: rules: add ntp.stratum keywordClosedJason IshActions
Related to Suricata - Feature #8394: firewall: support NTP hook states for firewall rule evaluationClosedJason IshActions
Related to Suricata - Feature #8488: ntp: use a buffer for reference id, not a u32ClosedJason IshActions

VJ Updated by Victor Julien about 2 months ago Actions #1

VJ Updated by Victor Julien about 2 months ago Actions #2

VJ Updated by Victor Julien about 2 months ago Actions #3

  • Target version changed from TBD to 9.0.0-beta1

JI Updated by Jason Ish about 1 month ago Actions #4

  • Related to Feature #8394: firewall: support NTP hook states for firewall rule evaluation added

JI Updated by Jason Ish about 1 month ago Actions #5

  • Status changed from New to In Progress
  • Assignee changed from OISF Dev to Jason Ish

JI Updated by Jason Ish about 1 month ago Actions #6

  • Related to Feature #8488: ntp: use a buffer for reference id, not a u32 added

JI Updated by Jason Ish about 1 month ago Actions #7

  • Status changed from In Progress to In Review

JI Updated by Jason Ish 28 days ago Actions #8

  • Status changed from In Review to Closed
Actions

Also available in: PDF Atom