EDNS-Client-Subnet ECS

Da Pozzo Matteo <[email protected]>
Newsgroups gmane.comp.security.ids.snort.devel
Message-ID <55560A9516213C45A36F74E8B964B2A972FD3F96@CED01MBXS01.replynet.prv>
Hi,

I would like if there is any plan for development regarding EDNS-Client-Subnet (like field extraction for Original-client-IP for HTTP) . I think that It could be useful for security purposes in existing deployments in order to use DNS query content like XFF for HTTP.

Please, let me know about your opinion.

Thanks in advance,

Best Regards.

Matteo


Matteo Da Pozzo

Communication Valley
Via Robert Koch, 1/4
20152 - Milano - ITALY
phone: +39 02 535761
mobile: +39 345 4954311
[email protected]<mailto:[email protected]>
www.reply.it

[Communication Valley]

________________________________

--
The information transmitted is intended for the person or entity to which it is addressed and may contain confidential and/or privileged material. Any review, retransmission, dissemination or other use of, or taking of any action in reliance upon, this information by persons or entities other than the intended recipient is prohibited. If you received this in error, please contact the sender and delete the material from any computer.

------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot

_______________________________________________
Snort-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/snort-devel

Archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-devel

Please visit http://blog.snort.org for the latest news about Snort!
com_valley.png (image/png, 3.1 KB) - not displayed
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.