Project

General

Profile

Actions

Feature #4723

open

Improve crash-dump diagnostics

Added by Jeff Lucovsky about 3 years ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
-
Effort:
medium
Difficulty:
medium
Label:

Description

https://redmine.openinfosecfoundation.org/issues/4526 adds diagnostic stacktraces to the log when Suricata receives SIGSEGV or SIGABRT

Building on this, it would be helpful to create a "crash report" (similar but different to the Watson reports from long ago with MS software)

A crash report might have the following types of information:
- In-flight processing details such as packets, signatures, flows
- Additional information from stack frame of where the signal occurred
- Other contextual information to aid forensic analysis of dump

No data to display

Actions

Also available in: Atom PDF