Project

General

Profile

Actions

Bug #4437

closed

dns: high resource usage on long lived dns connections

Added by Jason Ish over 3 years ago. Updated over 3 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:
Needs backport to 5.0, Needs backport to 6.0

Description

The transaction handling is off for unidirectional protocols like DNS on long lived connections. That is a single TCP/UDP session that receives multiple DNS requests/responses. For DNS this is rare, but some devices do this.

This results in the transaction cleanup trying to remove transactions that have already been removed.


Related issues 2 (0 open2 closed)

Copied to Suricata - Bug #4441: 6.0.x: dns: high resource usage on long lived dns connectionsClosedJason IshActions
Copied to Suricata - Bug #4474: 5.0.x: dns: high resource usage on long lived dns connectionsRejectedJason IshActions
Actions #1

Updated by Jason Ish over 3 years ago

  • Label Needs backport to 6.0 added
Actions #2

Updated by Peter Manev over 3 years ago

Currently testing a QA run addition to cover that in auto tests.

Actions #3

Updated by Jason Ish over 3 years ago

  • Status changed from Assigned to In Review
Actions #4

Updated by Jason Ish over 3 years ago

  • Status changed from In Review to Closed

Merged.

Actions #5

Updated by Jason Ish over 3 years ago

  • Copied to Bug #4441: 6.0.x: dns: high resource usage on long lived dns connections added
Actions #6

Updated by Jason Ish over 3 years ago

  • Label Needs backport to 5.0 added
Actions #7

Updated by Victor Julien over 3 years ago

  • Copied to Bug #4474: 5.0.x: dns: high resource usage on long lived dns connections added
Actions

Also available in: Atom PDF