我正在使用 Suricata 4.0.4,我想使用以下规则检查文件的 md5:
alert http any any -> any any (msg:"FILE MD5 Check against Malware Patrol blacklist"; filemd5: /root/2018.md5.txt; sid:10203040; rev:1;)
但在运行 suricata 之后,它说:
<Error> - [ERRCODE: SC_ERR_NO_MD5_SUPPORT(209)] - no MD5 calculation support built in, needed for filemd5 keyword
有什么建议么?