liuwentan
|
ac8a0a512c
|
[FEATURE]support get hit groups
|
2023-06-05 15:14:45 +08:00 |
|
liuwentan
|
029a391f5d
|
[patch]keep maat23.05 compatibility
|
2023-05-31 13:28:16 +08:00 |
|
liuwentan
|
51e29f0b95
|
[FEATURE]plugin table support ip_addr key type
|
2023-05-30 16:16:18 +08:00 |
|
刘文坛
|
464dc43cc4
|
fix group_exclude logic miss & add some corner case
|
2023-05-23 03:23:39 +00:00 |
|
liuwentan
|
6626cbd57c
|
[BUGFIX]fix hit paths miss path if sub group(has super group) is referenced by compile
|
2023-05-17 14:34:34 +08:00 |
|
刘文坛
|
6830966084
|
[BUGFIX]fix group_exclude miss hit groups
|
2023-05-15 07:24:36 +00:00 |
|
liuwentan
|
929d6ac139
|
[patch]change verify expression retval semantics:1(legal) 0(illegal)
|
2023-05-11 11:21:46 +08:00 |
|
liuwentan
|
f7bde76fcf
|
support more than one hierarchical group referenced(max hierarchical level: 5)
|
2023-05-08 16:39:58 +08:00 |
|
liuwentan
|
8a3683fa30
|
group_exclude(only one hierarchical group can be referenced)
|
2023-05-06 20:27:39 +08:00 |
|
liuwentan
|
33015d5aac
|
support parse encrypted json config
|
2023-05-04 17:10:19 +08:00 |
|
刘文坛
|
cb4502c698
|
implement rcu for g2g runtime & fix maat_stat bug
|
2023-04-24 02:14:26 +00:00 |
|
liuwentan
|
b8f98a1e9e
|
fix max table count error
|
2023-04-22 11:30:49 +08:00 |
|
liuwentan
|
72066281dc
|
solve invalid read
|
2023-04-22 10:46:21 +08:00 |
|
liuwentan
|
98d21b50af
|
optimize ip_scan time 130+ us -> 20+ us
|
2023-04-21 17:19:43 +08:00 |
|
liuwentan
|
af6df5951a
|
support maat stat
|
2023-04-20 15:34:56 +08:00 |
|
liuwentan
|
aadabcae0f
|
optimize group2group runtime
|
2023-04-18 09:32:21 +08:00 |
|
liuwentan
|
e89bb89fa9
|
fix maat_redis_tool bug
|
2023-04-14 16:51:09 +08:00 |
|
liuwentan
|
923b4c4168
|
optimize rcu compile runtime
|
2023-04-14 11:32:59 +08:00 |
|
liuwentan
|
ffc1740a00
|
fix Full config update bug https://jira.geedge.net/browse/TSG-14591
|
2023-04-13 18:53:36 +08:00 |
|
liuwentan
|
571ce08d3b
|
fix stream scan core https://jira.geedge.net/browse/TSG-14701
|
2023-04-13 14:56:35 +08:00 |
|
liuwentan
|
f213fcbe97
|
add rule count stat
|
2023-04-12 19:20:05 +08:00 |
|
liuwentan
|
e8fb0143e9
|
read_full_config error can't abort maat_new
|
2023-04-12 15:31:17 +08:00 |
|
liuwentan
|
53cd03995d
|
use pad instead of pack(4)
|
2023-04-10 14:13:41 +08:00 |
|
liuwentan
|
f571b481f6
|
delete xx_plugin get ex_data log
|
2023-04-10 13:40:21 +08:00 |
|
liuwentan
|
fb3896c078
|
refactor ex_data_runtime & fix all leak memory
|
2023-04-05 21:09:19 +08:00 |
|
liuwentan
|
5d545d6dbf
|
add hierarchy unit-test
|
2023-04-04 21:23:03 +08:00 |
|
liuwentan
|
9234ebb9e1
|
optimize district & support virtual table conjunction
|
2023-04-04 15:59:34 +08:00 |
|
liuwentan
|
d3d19a4fe9
|
fix leak memory
|
2023-04-04 09:31:20 +08:00 |
|
liuwentan
|
3ed1f3dfd4
|
delete compile table evaluation_order schema
|
2023-04-03 15:14:57 +08:00 |
|
liuwentan
|
18881c5bc3
|
fix coredump because of no compile/group2compile/group2group field in maat_json.json file
|
2023-03-30 20:49:59 +08:00 |
|
liuwentan
|
4bbd0ebdc4
|
fix group2group bug
|
2023-03-30 16:50:05 +08:00 |
|
liuwentan
|
96a5dfdecc
|
fix scan StreamFile bug
|
2023-03-30 15:22:33 +08:00 |
|
liuwentan
|
10571d3de4
|
compile/plugin ex_schema support input param table_name
|
2023-03-29 22:25:14 +08:00 |
|
liuwentan
|
658625fde3
|
fix clause update bug and stream scan bug
|
2023-03-29 14:29:34 +08:00 |
|
liuwentan
|
cca03b6faf
|
gcc4.8.5 don't support variable array size
|
2023-03-28 19:07:12 +08:00 |
|
liuwentan
|
c8450c8a04
|
export maat_stream_XX
|
2023-03-28 18:42:49 +08:00 |
|
liuwentan
|
4eee0ede80
|
add log level
|
2023-03-28 15:41:24 +08:00 |
|
liuwentan
|
e98627c9e7
|
optimize maat_scan_xx API
|
2023-03-28 14:07:44 +08:00 |
|
liuwentan
|
73060d1c35
|
support ip+port+proto scan
|
2023-03-27 15:52:47 +08:00 |
|
liuwentan
|
7b49d7d52f
|
interrupt execution if table schema has error
|
2023-03-23 19:16:23 +08:00 |
|
liuwentan
|
2ce749d9bc
|
support maat_state new/reset/free
|
2023-03-23 11:57:17 +08:00 |
|
liuwentan
|
a67d24381e
|
table_info.conf support table_name & db_tables to implement all physical tables conjunction
|
2023-03-22 20:40:36 +08:00 |
|
liuwentan
|
23ef2c3797
|
support same pattern different offset(x-x:pat1 & y-y:pat1)
|
2023-03-22 11:10:00 +08:00 |
|
liuwentan
|
37447eef7f
|
adapter_hs engine only construct stream db
|
2023-03-17 17:28:52 +08:00 |
|
liuwentan
|
68533f9d43
|
support expr stream scan
|
2023-03-17 11:32:13 +08:00 |
|
liuwentan
|
8312b69fda
|
maat_options set logger -> set log_path
|
2023-03-16 15:16:42 +08:00 |
|
liuwentan
|
15ec1549c8
|
plugin table support integer&pointer key type
|
2023-03-16 09:55:35 +08:00 |
|
liuwentan
|
71d6cbab2c
|
fix hyperscan depends ragel bug
|
2023-03-15 15:11:07 +08:00 |
|
liuwentan
|
fb4043f225
|
change sudo make -> make
|
2023-03-15 14:07:29 +08:00 |
|
liuwentan
|
fc4ee32b6c
|
fix continuous updating config with same key invalid bug
|
2023-03-15 13:30:39 +08:00 |
|