suricata
detect-tls-ja3-string.h File Reference
This graph shows which files directly or indirectly include this file:

Go to the source code of this file.

Functions

void DetectTlsJa3StringRegister (void)
 Registration function for keyword: ja3_string. More...
 

Detailed Description

Function Documentation

void DetectTlsJa3StringRegister ( void  )

Registration function for keyword: ja3_string.

Definition at line 72 of file detect-tls-ja3-string.c.

References Flow_::alproto, Signature_::alproto, ALPROTO_TLS, Flow_::alstate, AppLayerParserParse(), AppLayerParserThreadCtxAlloc(), AppLayerParserThreadCtxFree(), JA3Buffer_::data, DE_QUIET, SigTableElmt_::desc, DETECT_AL_TLS_JA3_STRING, DetectAppLayerInspectEngineRegister2(), DetectAppLayerMpmRegister2(), DetectBufferSetActiveList(), DetectBufferTypeGetByName(), DetectBufferTypeSetDescriptionByName(), DetectEngineAppendSig(), DetectEngineCtxFree(), DetectEngineCtxInit(), DetectEngineInspectBufferGeneric(), DetectEngineThreadCtxDeinit(), DetectEngineThreadCtxInit(), DOC_URL, DOC_VERSION, FAIL_IF, FAIL_IF_NOT, FAIL_IF_NULL, Flow_::flags, Packet_::flags, DetectEngineCtx_::flags, SigTableElmt_::flags, Packet_::flow, FLOW_DESTROY, FLOW_INITIALIZE, FLOW_IPV4, FLOW_PKT_ESTABLISHED, FLOW_PKT_TOSERVER, Packet_::flowflags, FlowGetProtoMapping(), FLOWLOCK_UNLOCK, FLOWLOCK_WRLOCK, SigTableElmt_::Free, InspectionBuffer::inspect, InspectionBufferApplyTransforms(), InspectionBufferGet(), InspectionBufferSetup(), SSLState_::ja3_str, Ja3IsDisabled(), SigTableElmt_::Match, mpm_default_matcher, DetectEngineCtx_::mpm_matcher, SigTableElmt_::name, PacketAlertCheck(), PASS, PKT_HAS_FLOW, PKT_STREAM_EST, PrefilterGenericMpmRegister(), Flow_::proto, Flow_::protoctx, Flow_::protomap, SigTableElmt_::RegisterTests, RunmodeIsUnittests(), SigTableElmt_::Setup, SIG_FLAG_TOSERVER, SigGroupBuild(), SIGMATCH_NOOPT, sigmatch_table, SigMatchSignatures(), str, STREAM_TOSERVER, StreamTcpFreeConfig(), StreamTcpInitConfig(), TRUE, SigTableElmt_::url, UTHBuildPacketReal(), UTHFreePacket(), and UtRegisterTest().

Referenced by SigTableSetup().

Here is the call graph for this function:

Here is the caller graph for this function: