py-idstools icon indicating copy to clipboard operation
py-idstools copied to clipboard

Feature request: xbits parsing support

Open sevdog opened this issue 8 years ago • 0 comments

As now the rule parser can extract flowbits, which are also used to check for never-triggering rule (see https://github.com/jasonish/py-idstools/blob/master/idstools/scripts/rulecat.py#L563).

It would be nice if this kind of processing could also be done using xbits.

sevdog avatar Nov 20 '17 13:11 sevdog