Victor Julien

Results 7 comments of Victor Julien

If we implement this in Suricata it may also be useful: https://redmine.openinfosecfoundation.org/issues/1879

I think I would prefer a combination of per connection and global tracking. I think the per connection tracking is logic that needs to be in libhtp, as each allocation...

I would want it to be a real-time hard limit. This is how we keep limits for other subsystems in Suricata as well. Pretty much the allocation functions just return...

Hi, sorry for the late response. I didn't get a notification for this, I'm checking why. I think this would possibly be fixed by 29835fa7049a21faa0ca9eb0382d1367a26ca48a, are you able to check...

You could also try passing the `-k` option to `vuurmuur`, which will skip the capabilities checks.

Ah I actually meant `-t` or `--no-check`, sorry.

Considering fixed in 0.8.2 by https://github.com/inliniac/vuurmuur/commit/29835fa7049a21faa0ca9eb0382d1367a26ca48a