Re: correct pflog comment in src/decode.h

Lawrence Belyeu via Snort-devel <[email protected]>
Newsgroups gmane.comp.security.ids.snort.devel
Message-ID <CAEgVrd6Ar_gYVWAG7AcNtNVT7mgEyPrYVHa4xhJG0OkLw7z0XQ@mail.gmail.com>
Please take me off this list. No longer need it.

On Oct 20, 2017 4:44 PM, "Markus Lude" <[email protected]> wrote:

> Hello,
>
> please correct the comment in src/decode.h
>
> Regards
> Markus
>
> --- src/decode.h.orig
> +++ src/decode.h
> @@ -835,9 +835,9 @@ typedef struct _SLLHdr {
>   * Pflog1_Hdr:  CVS = 1.3,  DLT_OLD_PFLOG = 17,  Length = 28
>   * Pflog2_Hdr:  CVS = 1.8,  DLT_PFLOG     = 117, Length = 48
>   * Pflog3_Hdr:  CVS = 1.12, DLT_PFLOG     = 117, Length = 64
> - * Pflog3_Hdr:  CVS = 1.172, DLT_PFLOG     = 117, Length = 100
> + * Pflog4_Hdr:  CVS = 1.16, DLT_PFLOG     = 117, Length = 100
>   *
> - * Since they have the same DLT, Pflog{2,3}Hdr are distinguished
> + * Since they have the same DLT, Pflog{2,3,4}Hdr are distinguished
>   * by their actual length.  The minimum required length excludes
>   * padding.
>   */
> _______________________________________________
> Snort-devel mailing list
> [email protected]
> https://lists.snort.org/mailman/listinfo/snort-devel
>
> Please visit http://blog.snort.org for the latest news about Snort!
>

_______________________________________________
Snort-devel mailing list
[email protected]
https://lists.snort.org/mailman/listinfo/snort-devel

Please visit http://blog.snort.org for the latest news about Snort!
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.