HTTP checks are mostly done via regex in IDS like Snort. This limits the flexibility to write custom rules to suit one’s needs. This proposal focuses on making libmodsecurity work for http checks given in snort by replacing them with rules in libmodsecurity. Comparison of speed of parsing in both the cases will also be tested.

Organization

Student

Akhil Koul

Mentors

  • Chaim Sanders
  • p0pr0ck5
close

2016