Feature #4153
open
Task #4772: tracking: parity between fields logged and fields available for detection
app-layer: rust derive style macros to generate common code
Added by Jason Ish about 4 years ago.
Updated 6 months ago.
Related issues
2 (2 open — 0 closed)
- Related to Optimization #4154: Rust Parsers: Abstract AppLayer events to a derive macro added
- Status changed from New to Assigned
- Assignee set to Jason Ish
- Target version changed from 7.0.0-beta1 to 8.0.0-beta1
Retargetting parent task to 8.0beta1 as I don't see moving anything existing to a derive macro for 7.
And logging and detection ;-)
One idea Jason has is to structure the structures such that we could use serde serialize to generate the output. Then the per field derive annotation could take care of the keyword registration.
- Related to Feature #5642: DNS: parity between log fields and detection added
- Subject changed from Rust parsers: Make use of Rust derive style macros to generate common code in parsers to app-layer: rust derive style macros to generate common code
- Parent task set to #4772
- Blocks Story #6597: rules: improve rules keyword/output parity added
Also available in: Atom
PDF