General

Profile

Zach Rasmor

Issues

Projects

Activity

05/25/2017

02:02 PM Suricata Feature #1766: TLS keyword expansion
Hello Mats - has there been any progress on the expanded logging, or should I resume my prototyping? Zach Rasmor

05/11/2016

02:25 PM Suricata Feature #1766: TLS keyword expansion
I began a prototype to add the cipher suite to the JSON output - are you already planning to do this? Zach Rasmor

03/31/2016

12:21 PM Suricata Bug #1754 (Closed): Inconsistent behavior with 'only_stream' flow keyword

In testing some Suricata rules with RDP pcap, I seem to have uncovered inconsistent behavior with the 'only_stream'...
Zach Rasmor

12/03/2015

03:10 PM Suricata Bug #1619 (Closed): Per-Thread Delta Stats Broken
Per-thread delta stats appear to be broken. I believe this is a known issue as I noticed some open pull requests, but... Zach Rasmor

11/30/2015

11:57 AM Suricata Feature #1608 (Assigned): Add option to disable JSON escape slash
We like to have the ability to search (grep) through JSON logs without de-serialization, however this becomes very te... Zach Rasmor

11/26/2015

01:34 PM Suricata Bug #1602: eve-log prefix field feature broken
Confirmed. Thanks a lot! Zach Rasmor

11/25/2015

02:47 PM Suricata Bug #1602: eve-log prefix field feature broken
Correction: it was Feature 1454 that added the prefix field (link is correct, text is incorrect) Zach Rasmor
02:45 PM Suricata Bug #1602 (Closed): eve-log prefix field feature broken
The eve-log prefix field is ignored. This was added as a feature in this release, but was undone by a later PR.
Hi...
Zach Rasmor

08/23/2015

10:57 PM Suricata Bug #1524: Potential Thread Name issues due to RHEL7 Interface Naming Contentions
Hello Victor, I wanted to confirm a couple of things:
In the dicussion on https://github.com/inliniac/suricata/pul...
Zach Rasmor

08/17/2015

02:24 PM Suricata Bug #1524: Potential Thread Name issues due to RHEL7 Interface Naming Contentions
Sure, I can take a look at what is done and move it forward.
Two questions:
1. Though I haven't looked at the c...
Zach Rasmor

Also available in: Atom