Project

General

Profile

Actions

Bug #5877

closed

stream: connections time out too early

Added by Victor Julien over 1 year ago. Updated over 1 year ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

A mismatch between the state of a connection as Suricata sees it and how the hosts see it can lead to cases where Suricata already times a connection out, while the connection isn't yet ready. In IPS mode Suricata can drop the rest of the connection. If midstream is enabled, the final part of the connection may be picked up again.


Subtasks 1 (0 open1 closed)

Bug #5895: stream: connections time out too early (6.0.x backport)ClosedVictor JulienActions
Actions

Also available in: Atom PDF