Project

General

Profile

Actions

Feature #4102

open

plugins: support creating app-layer parser, logger and detect

Added by Jason Ish about 4 years ago. Updated 6 months ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

The idea is that full support for an application protocol can be added as a plugin. This includes the parser, the logger and any detection keywords related to this protocol.

It might be possible to break this down into sub-tasks, but tracking as an entire feature as that is the goal.


Subtasks 6 (6 open0 closed)

Documentation #7149: devguide: document adding a app-layer pluginNewOISF DevActions
Documentation #7150: devguide: document adding a logging pluginNewOISF DevActions
Task #7151: plugins: add template app-layer pluginNewOISF DevActions
Task #7152: plugins: add template logger pluginNewOISF DevActions
Documentation #7153: devguide: document adding a detection pluginNewOISF DevActions
Task #7154: plugins: add template detection pluginNewOISF DevActions

Related issues 2 (2 open0 closed)

Related to Suricata - Task #4101: tracking: pluginsIn ProgressJason IshActions
Blocks Suricata - Story #7148: extensibility: pluginsNewVictor JulienActions
Actions

Also available in: Atom PDF