suricata-7.0

PPA description

Major version repo - Suricata 7.0

Suricata IDS/IPS/NSM stable packages
https://suricata.io/
https://oisf.net/

Suricata is a high performance, open source network analysis and threat detection software used by most private and public organizations, and embedded by major vendors to protect their assets.

Open Source and owned by a community run non-profit foundation, the Open Information Security Foundation (OISF). Suricata is developed by the OISF, its supporting vendors and the community.

Full features list -
https://suricata.io/features/all-features/

This Engine supports:

- Multi-Threading - provides for extremely fast and flexible operation on multicore systems.
- Multi Tenancy - Per vlan/Per interface
- Uses Rust for most protocol detection/parsing
- TLS/SSL certificate matching/logging/extraction
- IEEE 802.1ad (QinQ) and IEEE 802.1Q (VLAN) support
- All JSON output/logging capability
- IDS runmode
- IPS runmode
- IDPS runmode
- NSM runmode

High performance packet acquisition modes:
- Netmap
- PF_RING
- AF_PACKET
- AF_XDP
- XDP
- DPDK
- Netfilter

Tunnel decoding:
- Teredo
- IP-IP
- IP6-IP4
- IP4-IP6
- GRE
- VXLAN
- Geneve

Protocol parsers:
Support for packet decoding of
IPv4, IPv6, TCP, UDP, SCTP, ICMPv4, ICMPv6, GRE
Ethernet, PPP, PPPoE, Raw, SLL, VLAN, QINQ, MPLS, ERSPAN, VXLAN, Geneve

App layer decoding of:
HTTP, HTTP2, SSL, TLS, SMB, DCERPC, SMTP, FTP, SSH, DNS, Modbus, ENIP/CIP, DNP3, NFS, NTP, DHCP, TFTP, KRB5, IKEv2, SIP, SNMP, RDP, RFB, MQTT, QUICv1, GQUIC, PostgreSQL, IKEv1, ESP, VN-Tag

- File Extraction HTTP/HTTP2/SMTP/FTP/NFS/SMB - over 4000 file types recognized and extracted from live traffic.
- File MD5/SHA1/SHA256 matching
- JA3/JA3S/HASSH
- Gzip Decompression
- Fast IP Matching
- Datasets matching
- Rustlang enabled protocol detection
- Lua scripting

Adding this PPA to your system

You can update your system with unsupported packages from this untrusted PPA by adding ppa:oisf/suricata-7.0 to your system's Software Sources. (Read about installing)

sudo add-apt-repository ppa:oisf/suricata-7.0
sudo apt update
        
Technical details about this PPA

This PPA can be added to your system manually by copying the lines below and adding them to your system's software sources.

Display sources.list entries for:
deb https://ppa.launchpadcontent.net/oisf/suricata-7.0/ubuntu YOUR_UBUNTU_VERSION_HERE main 
deb-src https://ppa.launchpadcontent.net/oisf/suricata-7.0/ubuntu YOUR_UBUNTU_VERSION_HERE main 
Signing key:
1024R/9F6FC9DDB1324714B78062CBD7F87B2966EB736F (What is this?)
Fingerprint:
9F6FC9DDB1324714B78062CBD7F87B2966EB736F

For questions and bugs with software in this PPA please contact OISF.

PPA statistics

Activity
6 updates added during the past month.
View package details

Overview of published packages

16 of 6 results
Package Version Uploaded by
libhtp 1:0.5.48-0ubuntu2 OISF ()
libhtp 1:0.5.48-0ubuntu1 OISF ()
libhtp 1:0.5.48-0ubuntu0 OISF ()
suricata 1:7.0.5-0ubuntu2 OISF ()
suricata 7.0.5-0ubuntu1 OISF ()
suricata 7.0.5-0ubuntu0 OISF ()
16 of 6 results

Latest updates

  • suricata 5 days ago
    Successfully built
  • suricata 5 days ago
    Successfully built
  • libhtp 5 days ago
    Successfully built
  • libhtp 5 days ago
    Successfully built
  • libhtp 5 days ago
    Successfully built