[prev in list] [next in list] [prev in thread] [next in thread] 

List:       snort-users
Subject:    [Snort-users] Snort 2.9.8 Now Available
From:       Snort Releases <snortreleases () snort ! org>
Date:       2015-11-30 19:30:30
Message-ID: 565CA3D6.7030406 () snort ! org
[Download RAW message or body]

[Attachment #2 (multipart/alternative)]


Snort 2.9.8 is now available on snort.org at

http://www.snort.org/downloads  in the Snort Stable Release section.

2015-11-17 - Snort 2.9.8.0
[*] New additions
  *  SMBv2/SMBv3 support for file inspection.

  *  Port override for metadata service in IPS rules.

  *  AppID Lua detector performance profiling.

  *  Perfmon dumps stats at fixed intervals from absolute time.

  *  New preprocessor alert (120:18) to detect SSH tunneling over HTTP

  *  New config option|disable_replace|  to disable replace rule option.

  *  New Stream configuration|log_asymmetric_traffic|  to control logging to syslog.

  *  New shell script in tools to create simple Lua detectors for AppID.

[*] Improvements
  *  sfip_t refactored to use struct in6_addr for all ip addresses.

  *  Post-detection callback for preprocessors.

  *  AppID support for multiple server/client detectors evaluating on same flow.

  *  AppID API for DNS packets.

  *  Memory optimizations throughout.

  *  Support sending UDP active responses.

  *  Fix perfmon tracking of pruned packets.
  
  *  Stability improvements for AppID.

  *  Stability improvements for Stream6 preprocessor.

  *  Added improved support to block malware in FTP preprocessor.

  *  Added support to differentiate between active and passive FTP connections.

  *  Improvements done in Stream6 preprocessor to avoid having duplicate packets
     in the DAQ retry queue.
  
  *  Resolved an issue where reputation config incorrectly displayed 'blacklist' in
     priority field even though 'whitelist' option was configured.

  *  Added support for multiple expected sessions created per packet

  *  Active response now supports MPLS



Please submit bugs, questions, and feedback tobugs@snort.org   or the

Snort-Users mailing list.



Happy Snorting!

The Snort Release Team


[Attachment #5 (text/html)]

<html>
  <head>

    <meta http-equiv="content-type" content="text/html; charset=utf-8">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    <pre wrap="">Snort 2.9.8 is now available on snort.org at

<a class="moz-txt-link-freetext" \
href="http://www.snort.org/downloads">http://www.snort.org/downloads</a> in the Snort \
Stable Release section.

2015-11-17 - Snort 2.9.8.0
[*] New additions
 *  SMBv2/SMBv3 support for file inspection.

 *  Port override for metadata service in IPS rules.

 *  AppID Lua detector performance profiling.

 *  Perfmon dumps stats at fixed intervals from absolute time.

 *  New preprocessor alert (120:18) to detect SSH tunneling over HTTP

 *  New config option <code class="moz-txt-verticalline"><span \
class="moz-txt-tag">|</span>disable_replace<span class="moz-txt-tag">|</span></code> \
to disable replace rule option.

 *  New Stream configuration <code class="moz-txt-verticalline"><span \
class="moz-txt-tag">|</span>log_asymmetric_traffic<span \
class="moz-txt-tag">|</span></code> to control logging to syslog.

 *  New shell script in tools to create simple Lua detectors for AppID.

[*] Improvements
 *  sfip_t refactored to use struct in6_addr for all ip addresses.

 *  Post-detection callback for preprocessors.

 *  AppID support for multiple server/client detectors evaluating on same flow.

 *  AppID API for DNS packets.

 *  Memory optimizations throughout.

 *  Support sending UDP active responses.

 *  Fix perfmon tracking of pruned packets.
 
 *  Stability improvements for AppID.

 *  Stability improvements for Stream6 preprocessor.

 *  Added improved support to block malware in FTP preprocessor.

 *  Added support to differentiate between active and passive FTP connections.

 *  Improvements done in Stream6 preprocessor to avoid having duplicate packets 
    in the DAQ retry queue.
 
 *  Resolved an issue where reputation config incorrectly displayed 'blacklist' in
    priority field even though 'whitelist' option was configured.

 *  Added support for multiple expected sessions created per packet

 *  Active response now supports MPLS



Please submit bugs, questions, and feedback to  <a class="moz-txt-link-abbreviated" \
href="mailto:tobugs@snort.org">bugs@snort.org</a>   or the

Snort-Users mailing list.



Happy Snorting!

The Snort Release Team

</pre>
  </body>
</html>



------------------------------------------------------------------------------
Go from Idea to Many App Stores Faster with Intel(R) XDK
Give your users amazing mobile app experiences with Intel(R) XDK.
Use one codebase in this all-in-one HTML5 development environment.
Design, debug & build mobile apps & 2D/3D high-impact games for multiple OSs.
http://pubads.g.doubleclick.net/gampad/clk?id=254741911&iu=/4140

_______________________________________________
Snort-users mailing list
Snort-users@lists.sourceforge.net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-users

Please visit http://blog.snort.org to stay current on all the latest Snort news!

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic