Main Page
|
Alphabetical List
|
Data Structures
|
File List
|
Data Fields
|
Globals
|
Related Pages
snort_docs File List
Here is a list of all files with brief descriptions:
acconfig.h
[code]
acsmx.c
[code]
acsmx.h
[code]
auth.h
[code]
auth_unix.h
[code]
bitop.h
[code]
bounds.h
[code]
Bpf.h
[code]
byte_extract.c
[code]
byte_extract.h
[code]
cdefs.h
[code]
checksum.h
[code]
clnt.h
[code]
codes.c
[code]
codes.h
[code]
common_defs.h
[code]
Common include stuff I use all the time
config.h
[code]
dbug.h
[code]
debug.c
[code]
debug.h
[code]
decode.c
[code]
decode.h
[code]
detect.c
[code]
detect.h
[code]
Devioctl.h
[code]
errmsg.h
[code]
event.h
[code]
event_wrapper.c
[code]
Generate a snort event
event_wrapper.h
[code]
fatal.h
[code]
flow.c
[code]
FLOW and associated operations
flow.h
[code]
flow_cache.c
[code]
Where flows are stored
flow_cache.h
[code]
flow_callback.c
[code]
flow_callback.h
[code]
flow_class.c
[code]
flow_class.h
[code]
flow_config.h
[code]
flow_error.h
[code]
flow_hash.c
[code]
Hash function for FLOW keys
flow_hash.h
[code]
Hash function for FLOW keys
flow_packet.c
[code]
flow_packet.h
[code]
Interface for packet structures between snort and flow
flow_print.c
[code]
flow_print.h
[code]
flow_stat.c
[code]
flow_stat.h
[code]
flowps.c
[code]
flowps.h
[code]
flowps_snort.c
[code]
Interface between snort & portscan
flowps_snort.h
[code]
fpcreate.c
[code]
fpcreate.h
[code]
fpdetect.c
[code]
fpdetect.h
[code]
generators.h
[code]
getopt.c
[code]
getopt.h
[code]
gnuc.h
[code]
libnet/gnuc.h
[code]
hi_ad.c
[code]
This is the server anomaly module file. Looks for anomalous servers and other stuff. Still thinking about it
hi_ad.h
[code]
hi_client.c
[code]
Main file for all the client functions and inspection flow
hi_client.h
[code]
hi_client_norm.c
[code]
HTTP client normalization routines
hi_client_norm.h
[code]
Function prototypes for client normalization routines
hi_eo.h
[code]
Contains the data structures, event types, specific events, and function prototypes for the Event Output Module
hi_eo_events.h
[code]
hi_eo_log.c
[code]
This file contains the event output functionality that HttpInspect uses to log events and data associated with the events
hi_eo_log.h
[code]
hi_include.h
[code]
hi_mi.c
[code]
This file contains functions that deal with the logic of selecting the appropriate mode inspection (client, server, or anomalous server detection)
hi_mi.h
[code]
hi_norm.c
[code]
Contains normalization skeleton for server and client normalization routines
hi_norm.h
[code]
Contains function prototypes for normalization routines
hi_return_codes.h
[code]
This file defines the return codes for the HttpInspect functions
hi_server.c
[code]
Handles inspection of HTTP server responses
hi_server.h
[code]
Header file for HttpInspect Server Module
hi_si.c
[code]
This file contains functions to select server configurations and begin the HttpInspect process
hi_si.h
[code]
This file contains structures and functions for the Session Inspection Module
hi_ui_config.c
[code]
This file contains library calls to configure HttpInspect
hi_ui_config.h
[code]
hi_ui_iis_unicode_map.c
[code]
Functions for parsing the unicode map file
hi_ui_iis_unicode_map.h
[code]
Header file for hi_ui_iis_unicode_map functions
hi_ui_server_lookup.c
[code]
This file contains functions to access the SERVER_LOOKUP structure
hi_ui_server_lookup.h
[code]
hi_util.h
[code]
HttpInspect utility functions
hi_util_hbm.c
[code]
hi_util_hbm.h
[code]
hi_util_kmap.c
[code]
hi_util_kmap.h
[code]
hi_util_xmalloc.c
[code]
hi_util_xmalloc.h
[code]
ifaddrlist.h
[code]
inet_aton.c
[code]
IpAddrSet.c
[code]
IpAddrSet.h
[code]
IPExport.h
[code]
IPHlpApi.h
[code]
ipobj.c
[code]
ipobj.h
[code]
IPTypes.h
[code]
libnet-asn1.h
[code]
libnet-functions.h
[code]
libnet-headers.h
[code]
libnet-macros.h
[code]
libnet-ospf.h
[code]
libnet-structures.h
[code]
libnet.h
[code]
LibnetNT.h
[code]
log.c
[code]
log.h
[code]
m_ctype.h
[code]
m_string.h
[code]
mempool.c
[code]
mempool.h
[code]
misc.c
[code]
mpse.c
[code]
mpse.h
[code]
ms_unicode_generator.c
[code]
Program for dumping unicode codepoints that map to ASCII chars for each installed and valid codepage
mstring.c
[code]
mstring.h
[code]
mwm.c
[code]
mwm.h
[code]
my_list.h
[code]
my_pthread.h
[code]
my_sys.h
[code]
mysql.h
[code]
mysql.php3
[code]
mysql_com.h
[code]
mysql_version.h
[code]
mysqld_error.h
[code]
name.h
[code]
Ntddpack.h
[code]
packet_time.c
[code]
Easily allow modules to have a
gettimeofday()
based on packet time
packet_time.h
[code]
packet_types.h
[code]
parser.c
[code]
parser.h
[code]
pcap-namedb.h
[code]
pcap.h
[code]
pcre.h
[code]
pcreposix.h
[code]
pcrm.c
[code]
pcrm.h
[code]
perf-base.c
[code]
perf-base.h
[code]
perf-event.c
[code]
perf-event.h
[code]
perf-flow.c
[code]
perf-flow.h
[code]
perf.c
[code]
perf.h
[code]
perfstats.c
[code]
pgsql.php3
[code]
plugbase.c
[code]
plugbase.h
[code]
plugin_enum.h
[code]
pmap_clnt.h
[code]
pmap_prot.h
[code]
pmap_rmt.h
[code]
prototypes.h
[code]
raid.h
[code]
rpc.h
[code]
rpc_des.h
[code]
rpc_msg.h
[code]
rules.h
[code]
scoreboard.c
[code]
scoreboard.h
[code]
Implementation of a autorecovery scoreboard
server_stats.c
[code]
"policy" learning portion of portscan detector
server_stats.h
[code]
sf_sdlist.c
[code]
sf_sdlist.h
[code]
sfghash.c
[code]
sfghash.h
[code]
sfhashfcn.c
[code]
sfhashfcn.h
[code]
sfksearch.c
[code]
sfksearch.h
[code]
sflsq.c
[code]
sflsq.h
[code]
sfmemcap.c
[code]
sfmemcap.h
[code]
sfprocpidstats.c
[code]
sfprocpidstats.h
[code]
sfthd.c
[code]
sfthd.h
[code]
sfthreshold.c
[code]
sfthreshold.h
[code]
sfxhash.c
[code]
sfxhash.h
[code]
signature.c
[code]
signature.h
[code]
smalloc.h
[code]
snort.c
[code]
snort.h
[code]
snort_httpinspect.c
[code]
This file wraps the HttpInspect functionality for Snort and starts the HttpInspect flow
snort_httpinspect.h
[code]
snortpp.c
[code]
snprintf.c
[code]
snprintf.h
[code]
sp_byte_check.c
[code]
sp_byte_check.h
[code]
sp_byte_jump.c
[code]
sp_byte_jump.h
[code]
sp_clientserver.c
[code]
sp_clientserver.h
[code]
sp_dsize_check.c
[code]
sp_dsize_check.h
[code]
sp_flowbits.c
[code]
sp_flowbits.h
[code]
sp_icmp_code_check.c
[code]
sp_icmp_code_check.h
[code]
sp_icmp_id_check.c
[code]
sp_icmp_id_check.h
[code]
sp_icmp_seq_check.c
[code]
sp_icmp_seq_check.h
[code]
sp_icmp_type_check.c
[code]
sp_icmp_type_check.h
[code]
sp_ip_fragbits.c
[code]
sp_ip_fragbits.h
[code]
sp_ip_id_check.c
[code]
sp_ip_id_check.h
[code]
sp_ip_proto.c
[code]
sp_ip_proto.h
[code]
sp_ip_same_check.c
[code]
sp_ip_same_check.h
[code]
sp_ip_tos_check.c
[code]
sp_ip_tos_check.h
[code]
sp_ipoption_check.c
[code]
sp_ipoption_check.h
[code]
sp_isdataat.c
[code]
sp_isdataat.h
[code]
sp_pattern_match.c
[code]
sp_pattern_match.h
[code]
sp_pcre.c
[code]
sp_pcre.h
[code]
sp_react.c
[code]
sp_react.h
[code]
sp_respond.c
[code]
sp_respond.h
[code]
sp_rpc_check.c
[code]
sp_rpc_check.h
[code]
sp_session.c
[code]
sp_session.h
[code]
sp_tcp_ack_check.c
[code]
sp_tcp_ack_check.h
[code]
sp_tcp_flag_check.c
[code]
sp_tcp_flag_check.h
[code]
sp_tcp_seq_check.c
[code]
sp_tcp_seq_check.h
[code]
sp_tcp_win_check.c
[code]
sp_tcp_win_check.h
[code]
sp_template.c
[code]
sp_template.h
[code]
sp_ttl_check.c
[code]
sp_ttl_check.h
[code]
spo_alert_fast.c
[code]
spo_alert_fast.h
[code]
spo_alert_full.c
[code]
spo_alert_full.h
[code]
spo_alert_sf_socket.c
[code]
spo_alert_sf_socket.h
[code]
spo_alert_syslog.c
[code]
spo_alert_syslog.h
[code]
spo_alert_unixsock.c
[code]
spo_alert_unixsock.h
[code]
spo_csv.c
[code]
spo_csv.h
[code]
spo_database.c
[code]
spo_database.h
[code]
spo_log_ascii.c
[code]
spo_log_ascii.h
[code]
spo_log_null.c
[code]
spo_log_null.h
[code]
spo_log_tcpdump.c
[code]
spo_log_tcpdump.h
[code]
spo_plugbase.h
[code]
spo_unified.c
[code]
spo_unified.h
[code]
spp_arpspoof.c
[code]
spp_arpspoof.h
[code]
spp_bo.c
[code]
spp_bo.h
[code]
spp_conversation.c
[code]
spp_conversation.h
[code]
spp_flow.c
[code]
Flow integration with snort
spp_flow.h
[code]
spp_frag2.c
[code]
spp_frag2.h
[code]
spp_httpinspect.c
[code]
spp_httpinspect.h
[code]
spp_perfmonitor.c
[code]
spp_perfmonitor.h
[code]
spp_portscan.c
[code]
spp_portscan.h
[code]
spp_portscan2.c
[code]
spp_portscan2.h
[code]
spp_rpc_decode.c
[code]
spp_rpc_decode.h
[code]
spp_stream4.c
[code]
spp_stream4.h
[code]
spp_telnet_negotiation.c
[code]
spp_telnet_negotiation.h
[code]
spp_template.c
[code]
spp_template.h
[code]
stdint.h
[code]
strlcatu.c
[code]
strlcatu.h
[code]
strlcpyu.c
[code]
strlcpyu.h
[code]
strtok_r.c
[code]
svc.h
[code]
svc_auth.h
[code]
sys_include.h
[code]
syslog.c
[code]
syslog.h
[code]
tag.c
[code]
tag.h
[code]
timersub.h
[code]
types.h
[code]
ubi_BinTree.c
[code]
ubi_BinTree.h
[code]
ubi_SplayTree.c
[code]
ubi_SplayTree.h
[code]
unique_tracker.c
[code]
Track the uniqueness of an address's connections
unique_tracker.h
[code]
unistd.h
[code]
util.c
[code]
util.h
[code]
util_math.c
[code]
Math related util functions
util_math.h
[code]
Math related util functions
util_net.c
[code]
util_net.h
[code]
Simple network related functions
util_str.c
[code]
Utility string functions
util_str.h
[code]
String utility functions
win32_service.c
[code]
xdr.h
[code]
Generated on Sun Feb 22 15:21:20 2004 for snort_docs by
1.3.6