Re: [Snort-sigs] Snort 2.9.11.0 has been released!
"Joel Esler \(jesler\) via Snort-devel" <[email protected]>
| Newsgroups | gmane.comp.security.ids.snort.devel |
|---|---|
| Message-ID | <[email protected]> |
We do not control PFSense’s upgrade cycle. You will have to ask the PFSense developers via their forums to upgrade the version of Snort inside the PFSense system. -- Joel Esler | Talos: Manager | [email protected]<mailto:[email protected]> On Oct 11, 2017, at 12:54 PM, Glenn Ungaro <[email protected]<mailto:[email protected]>> wrote: Any chance this will be available for pfSense as well? Glenn Ungaro Asst. Network Administrator Northeast Computer Corp. [email protected]<mailto:[email protected]> On Oct 11, 2017, at 12:28 PM, Snort Releases <[email protected]<mailto:[email protected]>> wrote: Please join the Snort team as we welcome the addition of Snort 2.9.11.0 to general availability! Snort 2.9.11.0 can be downloaded from the usual location on Snort.org<https://www.snort.org/downloads>. Below are the release notes: Snort 2.9.11 [*] New additions Changes to eliminate Snort restart when there are changes to the memory allocated for preprocessors, by releasing unused or least recently used memory when needed. Added support for storing filenames in Unicode for SMB protocol. Added implementation of hostPortCache versioning for unknown flows in AppID to detect and block BitTorrent. [*] Improvements Enhanced RTSP metadata parsing to match the user-agent field to detect RTSP traffic over Windows Media. Performance improvement when SYN rate limit has reached and drop is configured as next action Control-socket and side-channel support for FreeBSD platform. Fixed issue in file signature lookup for retransmitted FTP packet. Enhanced the processing of SIP/RTP future flows without ignoring them. Changes made in PDF/SWF decompression by adding boundary to the size of the decompressed data. Added a null check to prevent copy unless debugHostIp is configured in AppId. Fixed issue where FTP file type block doesn't work for retried download. Resolved issue where Snort is inappropriately handling traffic for which AppId was creating future flow. Performance improvements for SIP/RTP audio and video data flow in AppId. Performance and stability improvements in FTP preprocessor like incorrect referencing of ftp_data_session after its pruned. Stability improvement by resolving valgrind reported issues in AppId. Improved flushing mechanism for HTTP POST header. Added changes to display AppId for IPv6 unified events. Fixed issues with printing of messages for out-of-order packets. Fixed issue in increment of detection filter counter when rule is used in multiple configurations. Fixed dynamic preprocessor compilation failure in OpenBSD platform. Added changes to improve performance of ipvar list comparison. Enhanced SMTP client detection by allowing line folding and all authentication methods. As always, join the conversation over on the Snort-Users list<https://www.snort.org/community> for any installation or upgrade assistance! _______________________________________________ Snort-sigs mailing list [email protected]<mailto:[email protected]> https://lists.snort.org/mailman/listinfo/snort-sigs http://www.snort.org Please visit http://blog.snort.org for the latest news about Snort! Visit the Snort.org<http://Snort.org> to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href=" https://snort.org/downloads/#rule-downloads">emerging threats</a>! _______________________________________________ Snort-sigs mailing list [email protected]<mailto:[email protected]> https://lists.snort.org/mailman/listinfo/snort-sigs http://www.snort.org Please visit http://blog.snort.org for the latest news about Snort! Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href=" https://snort.org/downloads/#rule-downloads">emerging threats</a>! _______________________________________________ Snort-devel mailing list [email protected] https://lists.snort.org/mailman/listinfo/snort-devel Please visit http://blog.snort.org for the latest news about Snort!