Project

General

Profile

Actions

Bug #4437

closed

dns: high resource usage on long lived dns connections

Added by Jason Ish over 3 years ago. Updated over 3 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:
Needs backport to 5.0, Needs backport to 6.0

Description

The transaction handling is off for unidirectional protocols like DNS on long lived connections. That is a single TCP/UDP session that receives multiple DNS requests/responses. For DNS this is rare, but some devices do this.

This results in the transaction cleanup trying to remove transactions that have already been removed.


Related issues 2 (0 open2 closed)

Copied to Suricata - Bug #4441: 6.0.x: dns: high resource usage on long lived dns connectionsClosedJason IshActions
Copied to Suricata - Bug #4474: 5.0.x: dns: high resource usage on long lived dns connectionsRejectedJason IshActions
Actions

Also available in: Atom PDF