From 457ce10e99549b93a01214ba776be45183aa0548 Mon Sep 17 00:00:00 2001 From: Bernhard Amann Date: Wed, 13 Mar 2013 00:34:15 -0700 Subject: [PATCH] and re-enable caching of extracted certs I kind of deleted the line by accident... --- scripts/policy/protocols/ssl/extract-certs-pem.bro | 1 + 1 file changed, 1 insertion(+) diff --git a/scripts/policy/protocols/ssl/extract-certs-pem.bro b/scripts/policy/protocols/ssl/extract-certs-pem.bro index f48d4bc369..c64e8f86dc 100644 --- a/scripts/policy/protocols/ssl/extract-certs-pem.bro +++ b/scripts/policy/protocols/ssl/extract-certs-pem.bro @@ -39,6 +39,7 @@ event ssl_established(c: connection) &priority=5 # If we already extracted this cert, don't do it again. return; + add extracted_certs[c$ssl$cert_hash]; local filename = Site::is_local_addr(c$id$resp_h) ? "certs-local.pem" : "certs-remote.pem"; local outfile = open_for_append(filename);