Skip to content

Feature Request: Support for nDPI for Suricata 8+ #254

@da667

Description

@da667

Hello!

I wanted to submit a request to support nDPI and hyperscan for Suricata containers running version 8+.

details: https://docs.suricata.io/en/suricata-8.0.3/plugins/ndpi.html

I've managed to do this successfully through the creation of a custom dockerfile, and custom suricata.yaml. I'm willing to do the work and submit a pull request, since I already got it figured out, but just wanted to see how you wanted to proceed.

The dockerfile change I'm proposing also includes new instructions to acquire vectorscan, a hyperscan replacement, and compile it from source. I wanted to know if you were interested in a single Dockerfile with both of these changes, or if you wanted those tracked in separate issues, and separate pull requests, or if this is customization that you want to leave as a choice to the users. In which case, I'm playing on writing a tutorial on how to do this.

As always, thank you for making and continuing to support Dalton.

-Tony

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions