-
Notifications
You must be signed in to change notification settings - Fork 487
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Process Id #71
Comments
Fyi I found a documentation link showing that it's possible to use a string absolute path to one or more binaries for filtering matching, supported back in Vista. So it should be possible to do that as well. When I have time I'd like to take a crack at one of these features and just do a PR. |
Although that data-structure contains a |
No, as the link mentions you still need to get the PID from the ALE layer, and WinDivert does not support this layer for now. |
I see, you are indeed correct, thanks again @basil00! |
@basil00, do you have any plans to support the ALE layer some day? A project of mine has me looking at it now. Cheers |
Perhaps one day, but development on WinDivert is currently dormant until #53 is resolved. |
To get the process id it's currently required to execute the very expensive GetTcpTable2 (or similar) function. However, the process id already seems to be available in WFP (https://msdn.microsoft.com/en-us/library/windows/hardware/ff552397(v=vs.85).aspx). Maybe this could be added to PWINDIVERT_ADDRESS?
PS: Thanks for the great lib!
The text was updated successfully, but these errors were encountered: