Thursday, April 30, 2015

Snort++ Build 150 Available

Snort++ build 150 is now available on snort.org.  This is the latest monthly update of the downloads.  You can also get the latest updates from github (snortadmin/snort3) which is updated weekly.

New features:

  • pop and imap inspectors ported
  • added publish-subscribe handling of data events
  • added data_log plugin example for pub-sub
  • added build of snort_manual.text if w3m is installed (all in one file)
  • added default_snort_manual.text w/o w3m

Bug fixes and enhancements:

  • fix http_inspect mpse search
  • fixed urg rule option
  • change daq.var to daq.vars to support multiple params; reported by Sancho Panza
  • ensure unknown sources are analyzed
  • fixed default validation issue reported by Sancho Panza
  • fixed xcode static analysis issues
  • change PT_DATA to IT_PASSIVE; supports named instances, reload, and consumers

Please submit bugs, questions, and feedback to bugs@snort.org or the Snort-Users mailing list.

Happy Snorting!
The Snort Release Team