Actions
Bug #3856
closeddcerpc: last response packet not logged
Affected Versions:
Effort:
Difficulty:
Label:
Description
For the pcap https://github.com/OISF/suricata-verify/blob/master/tests/dcerpc-dce-iface-01/20171220_smb_psexec_mimikatz_ticket_dump-s2.pcap, last response was never logged. I tried looking up what I did wrong but the response handler is never called for the last response (call ID: 20), I also cannot see the C code for response handling called for this packet.
Actions