Suricata replaces snort's Network Intrusion Detection System

Source: Internet
Author: User

Suricata is a network intrusion detection and protection engine developed by the Open Information Security Foundation and its supported vendors. The engine is multi-threaded and has built-in support for IPv6. You can load existing snort rules and signatures,

Support for Barnyard and barnyard2 tools

Suricata 1.0 improvements:

1. Added support for tag keywords;
2. DCERPC supporting UDP;
3. Duplicate signature detection;
4. Improve Cuda support and Uri detection;
5. Improved stability and performance.

 

Latest 1.0: http://www.openinfosecfoundation.org/download/suricata-1.0.0.tar.gz

The oisf development team is proud to announceSuricata 1.0.0, The first stable release of suricata, the open source Intrusion

Detection and Prevention engine.

 

New Features

-Support for the tag keyword was added.
-Support for DCERPC over UDP was added.

Improvements

-Cuda was fixed and it's performance was improved a lot
-Fix short HTTP sessions sometimes not being parsed properly.
-Duplicate signatures are now detected, the signature with the highest revision is used.
-Uricontent inspection was improved.
-Alert debuglog now also prints flow information, including flowbits.
-Pattern searching was improved in general and specially also for DCE traffic.

 

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.