Suricata 4.0 released
Version 4.0 of the Suricata intrusion detection system (IDS) and network security monitor (NSM) has been released. The release has improved detection for threats in HTTP, SSH, and other protocols, improvements to TLS, new support for NFS, additions to the extensible event format (EVE) JSON logging, some parts have been implemented in Rust, and more. "This is the first release in which we've implemented parts in the Rustlanguage using the Nom parser framework. This work is inspired by PierreChiffliers' (ANSSI), talk at SuriCon 2016 (pdf). By compiling with-enable-rust you'll get a basic NFS parser and a re-implementation ofthe DNS parser. Feedback on this is highly appreciated. The Rust support is still experimental, as we are continuing to explorehow it functions, performs and what it will take to support it in thecommunity. Additionally we included Pierre Chiffliers Rust parsers work.This uses external Rust parser 'crates' and is enabled by using-enable-rust-experimental. Initially this adds a NTP parser."