Actions
Bug #6733
closedtcp: tcp flow flags changing incorrectly when ruleset contains content matching
Affected Versions:
Effort:
Difficulty:
Label:
Description
When content-matching rules are used in Suricata 7, the flow flags change from SYN to SYN-ACK.
This doesn't happen when the ruleset does not contain content-matching rules and it neither happens in Suricata 6 (never).
Files
Actions