General

Profile

Eric Urban

  • Login: eurban
  • Registered on: 03/26/2018
  • Last connection: 01/08/2021

Issues

open closed Total
Assigned issues 1 1 2
Reported issues 3 7 10

Activity

11/11/2019

07:20 PM Suricata Support #3320: Signficant packet loss when using Suricata with Rust enabled
I believe I found answer to my question in the previous comment, which is that the SMB2 app-layer parser is disabled ... Eric Urban
03:48 PM Suricata Support #3320: Signficant packet loss when using Suricata with Rust enabled
After making this change we have had 0 drops and the packets between our Rust enabled and non-Rust enabled sensors ha... Eric Urban

11/07/2019

07:20 PM Suricata Support #3320: Signficant packet loss when using Suricata with Rust enabled
Hello Victor, thank you for the prompt response!
I put the config change in place on our test sensor with Rust y...
Eric Urban

11/05/2019

09:00 PM Suricata Support #3320 (Closed): Signficant packet loss when using Suricata with Rust enabled
*Summary*
We experience significant packet loss at times with Rust enabled in Suricata. In our environment we have ...
Eric Urban

10/10/2019

09:08 PM Suricata Bug #2656: Alerts not triggered under some conditions on traffic containing rule matches
Hello Andreas, you are correct that the 2nd pcap in each group are the ones where I was wondering why they don't trig... Eric Urban

10/09/2019

08:49 PM Suricata Documentation #2470: Suricata does not always alert on traffic with content that matches rules
Sorry, I must have missed the notification from this issue as I just saw it now when logging into Redmine.
Thank y...
Eric Urban
08:01 PM Suricata Support #3229: Abnormal traffic produces unexpected alerts for traffic that is opposite direction of rule
I forgot to call out specifically that a concern here is not just for alerts that are generated from this type of tra... Eric Urban
07:08 PM Suricata Support #3229 (Feedback): Abnormal traffic produces unexpected alerts for traffic that is opposite direction of rule
_Note that I am opening this as a support ticket, but is probably a feature request. As best as I can tell, this beh... Eric Urban

07/18/2019

05:36 PM Suricata Bug #3004: SC_ERR_PCAP_DISPATCH with message "error code -2" upon rule reload completion
A modified version of the patch (described in last comment) has been in place on one of our 4.1.4 version sensors sin... Eric Urban

07/09/2019

08:34 PM Suricata Bug #3004: SC_ERR_PCAP_DISPATCH with message "error code -2" upon rule reload completion
Sorry for the delay. I just applied a modified version of the patch on an instance where we have seen this error on ... Eric Urban

Also available in: Atom