Monday, August 31, 2015

Snort++ Build 167 Available Now

Snort++ build 167 is now available on  This is the latest monthly update of the downloads.  You can also get the latest updates from github (snortadmin/snort3) which is updated weekly.

New Features

  • support multiple script-path args and single files
  • flow depth support for new_http_inspect

Bug Fixes

  • fix xcode warnings
  • fix link error with g++ 4.8.3
  • piglet bug fixes
  • fix parameter range for those depending on loaded plugins; thanks to Siti Farhana Binti Lokman ""; for reporting the issue
  • fixed port_scan packet selection
  • fixed rpc_decode sequence number handling and buffer setup
  • perf_monitor fixes for file output
  • fix ac_sparse_bands search method
  • fix unit test return value
  • fix documentation errors in user manual
  • fix unit test build on osx
  • DAQ packet header conditional compilation for piglet
  • cleanup debug macros
Other Changes

  • add usage examples with live interfaces; thanks to Aman Mangal "" for reporting the problem
  • TCP session refactoring and create libtcp
  • doc and build tweaks for piglets
  • expanded piglet interfaces and other enhancements
  • add catch.hpp include from
  • run catch unit tests after check unit tests
  • add range and default to command line args
  • add make targets for dev_guide.html and snort_online.html

Please submit bugs, questions, and feedback to or the Snort-Users mailing list.

Happy Snorting!
The Snort Release Team