Snort 2.2.0 Final Released

Jeremy Hewlett <[email protected]> Wed, 11 Aug 2004 17:05:25 -0400
Newsgroups gmane.comp.security.ids.snort.announce
Message-ID <20040811210525.GB1610__29279.3225301013$1092259716$gmane$org@sourcefire.com>
Hello, Snorters!

Thanks for testing out the Release Candidate, a good number of bugs
were squashed for the Final release. To that end, we're pleased to
announce the availability of 2.2.0 Final. The following items list
what has changed from RC1->Final. Please check it out and let us know
what you think!

* Updated database schema diagram from Chris Reid. Schema can be found
  in ./doc/snort_schema_v106.pdf
* Added --include-pcre* configuration option to help cross compiling.
  Thanks Erik de Castro Lopo.
* Fixed thresholding/suppression issue with queuing multiple
  events per packet.  Thanks Andreas Ostling.
* When a rebuilt stream causes an alert, log out the original packets
  instead of the rebuilt packet.  Thanks [email protected] for the
  report.
* Turned off http_inspect alerts that were causing false positives in
  the preset webserver profiles (Thanks Dan Roelker).
* Turn off encoding alerts in HTTP parameter field.  The parameter
  field is still normalized, it just doesn't alert.  This helps reduce
  alerts that are generated from complex parameter queries (Thanks Dan
  Roelker).
* Fixed memory leak in "fast" output.  Thanks for your bug report
  [email protected].
* Clear error code which under Windows was causing a subsequent false
  failure in parsing threshold rules.  (Thanks to Rich Adamson)

Further details can be found in Changelog and RELEASE.NOTES.

Thanks!
The Snort Team
  


-------------------------------------------------------
SF.Net email is sponsored by Shop4tech.com-Lowest price on Blank Media
100pk Sonic DVD-R 4x for only $29 -100pk Sonic DVD+R for only $33
Save 50% off Retail on Ink & Toner - Free Shipping and Free Gift.
http://www.shop4tech.com/z/Inkjet_Cartridges/9_108_r285