Snort v3.1.69.0 available to download now
"Brendan Bell \(brebell\) via Snort-users" <[email protected]> Tue, 29 Aug 2023 13:57:49 +0000
| Newsgroups | gmane.comp.security.ids.snort.general |
|---|---|
| Message-ID | <PH7PR11MB8600BB1D9CB3F79F02F018B2B2E7A@PH7PR11MB8600.namprd11.prod.outlook.com> |
Snort v3.1.69.0 is available to download now. https://snort.org/downloads/snortplus/snort3-3.1.69.0.tar.gz If you have questions or would like to connect with other snort users, please join our Discord: https://discord.gg/WjG67yDk Changes in this release since 3.1.67.0: * appid, cip: parsing cip safety segments * appid: mark ssl appid lookup successful if a service id is available * appid: prefer eve client over appid detected client after decryption and use appid detected client version if eve client equals appid client * dce_rpc: fix stats for client/server segments reassembled. Thanks to Bader-eddine Ouaich for addressing the issue. * dns: parse and publish dns response with ip, fqdn/ttl data * dns: updates to allow DNS to be compiled dynamically. * doc: udpate tutorial * framework: add virtual for inspectors that publish data when no ips policy is enabled. * http2_inspect: add frame when logging a packet * http2_inspect: handle empty header name * http2_inspect: update connection settings on ack * http2_inspect: update test tool configurations * http_inspect: adjust formatting * http_inspect: disable rule evaluation caching for MIME attachments * inspector: export get_service_inspector_by_service method * managers: fix get_inspector to use the passed in snort config for context and inspection inspectors * mime: fix boundary search * mime: postpone boundary-look-alike data till the next PDU arrives * mime: support transport padding in boundary strings * sfip: Add < operator so SfIp can be used in std::map and std::set. * src: remove ips option asn1 * stream: init meta ack packet action field * wizard: refactoring - split curses to multiple files by protocol Snort v3.1.69.0 is available to download now. https://snort.org/downloads/snortplus/snort3-3.1.69.0.tar.gz _______________________________________________ Snort-users mailing list [email protected] Go to this URL to change user options or unsubscribe: https://lists.snort.org/mailman/listinfo/snort-users To unsubscribe, send an email to: [email protected] Please visit http://blog.snort.org to stay current on all the latest Snort news! Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette