Suricata is a network intrusion detection and protection engine developed by the Open Information Security Foundation and its supported vendors. The engine is multi-threaded and has built-in support for IPv6. You can load existing snort rules and signatures,
Support for Barnyard and barnyard2 tools
Suricata 1.0 improvements:
1. Added support for tag keywords;
2. DCERPC supporting UDP;
3. Duplicate signature detection;
4. Improve Cuda support and Uri detection;
5. Improved stability and performance.
Latest 1.0: http://www.openinfosecfoundation.org/download/suricata-1.0.0.tar.gz
The oisf development team is proud to announceSuricata 1.0.0, The first stable release of suricata, the open source Intrusion
Detection and Prevention engine.
New Features
-Support for the tag keyword was added.
-Support for DCERPC over UDP was added.
Improvements
-Cuda was fixed and it's performance was improved a lot
-Fix short HTTP sessions sometimes not being parsed properly.
-Duplicate signatures are now detected, the signature with the highest revision is used.
-Uricontent inspection was improved.
-Alert debuglog now also prints flow information, including flowbits.
-Pattern searching was improved in general and specially also for DCE traffic.