General

Profile

Andreas Herz

Issues

open closed Total
Assigned issues 13 51 64
Reported issues 36 58 94

Projects

Project Roles Registered on
Suricata Developer, OISF Team, OISF Manager 12/02/2015
Suricata-Update Developer, OISF Team, OISF Manager 10/31/2017

Activity

01/12/2024

08:08 PM Suricata Bug #6678: datasets: discard datasets that hit the memcap while loading correctly
https://github.com/OISF/suricata/pull/10155 Andreas Herz
11:20 AM Suricata Bug #6678 (In Review): datasets: discard datasets that hit the memcap while loading correctly
Loading a dataset via a signature with memcap should be discarded properly instead of a partial load.... Andreas Herz

12/22/2023

09:55 AM Suricata Feature #6649 (New): Add a keyword to match on raw data within headers especially for protocols without a dedicated parser
It would be helpful to have an additional keyword like the `content` one that would also match on headers of protocol... Andreas Herz

12/13/2023

10:10 AM Suricata Feature #6296: smtp: BDAT chunking support incl MIME parsing
Ralf Meister wrote in #note-5:
> I would like to share these patches with you. How can this be done?
We have put ...
Andreas Herz

10/02/2023

03:47 PM Suricata Bug #6376 (In Review): Huge increase on Suricata load time with a lot of ip-only rules and bigger HOME_NET
At deployments with bigger HOME_NET variables, like a university or big enterprise, we could end up with a very long ... Andreas Herz

09/04/2023

12:47 PM Suricata Feature #6295 (Assigned): output: add stream-size to flow output
Since we have the `stream-size` keyword it would be helpful to have this data also into the JSON output, especially i... Andreas Herz

07/18/2023

07:22 AM Suricata Optimization #6221 (New): build: check for compiler warnings/messages
Compiling Suricata 7.0.0 on Arch Linux shows the following messages when Suricata is built:... Andreas Herz

07/11/2023

02:31 PM Suricata Documentation #5473: doc: upgrade guide for upgrading from 6 to 7
https://github.com/OISF/suricata/pull/9213 Andreas Herz
12:38 PM Suricata Documentation #5473: doc: upgrade guide for upgrading from 6 to 7
We already have most covered in https://docs.suricata.io/en/latest/upgrade.html#upgrading-6-0-to-7-0 but I would do a... Andreas Herz

07/03/2023

09:54 AM Suricata Bug #6197 (Assigned): stream: additional alerts being seen once sigs are added
If we add a unrelated signature we can cause the `bytemath` tests to trigger more alerts.
For example we get this ...
Andreas Herz

Also available in: Atom