[Bro-Dev] [JIRA] (BIT-939) HTTP parser refact & redesign required

Mark Fernandez (JIRA) jira at bro-tracker.atlassian.net
Tue Dec 1 07:56:00 PST 2015


    [ https://bro-tracker.atlassian.net/browse/BIT-939?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=23100#comment-23100 ] 

Mark Fernandez commented on BIT-939:
------------------------------------

My comments are based on Bro v2.4.1 source code.

> HTTP parser refact & redesign required
> --------------------------------------
>
>                 Key: BIT-939
>                 URL: https://bro-tracker.atlassian.net/browse/BIT-939
>             Project: Bro Issue Tracker
>          Issue Type: Problem
>          Components: Bro
>    Affects Versions: git/master
>            Reporter: drmckay
>             Fix For: 2.5
>
>
> Hi,
> In the HTTP parser implementation you following an old, obsoleted rfc from 1999. There is a newer version: http://tools.ietf.org/html/rfc3986
> Please, review and refact your code (unescapeURI() redesign also needed, to minimalize false positives).
> Thanks.



--
This message was sent by Atlassian JIRA
(v7.1.0-OD-02-025#71001)


More information about the bro-dev mailing list