Project

General

Profile

Actions

Bug #1680

closed

Output sensor name in json

Added by John Meyer about 8 years ago. Updated about 8 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

There currently does not appear to be a function to output the sensor name to json.

This is required if I want to run multiple instances and write to one file, then differentiate after the fact.

Actions #1

Updated by John Meyer about 8 years ago

As a clarification, I'm referring to the eve output.

Actions #2

Updated by Jason Ish about 8 years ago

  • Tracker changed from Feature to Bug
  • Status changed from New to Assigned
  • Assignee set to Jason Ish
  • Target version set to 70

See https://redmine.openinfosecfoundation.org/issues/1679

As a temporary work-around, specify "sensor-name" under -eve-log:. I say temporary, as I think we're going to agree that it should use the sensor-name located at the root level of the configuration file.

The sensor name will then show up as the "host" in the eve-log.

Actions #3

Updated by Jason Ish about 8 years ago

  • Status changed from Assigned to Closed
Actions #4

Updated by Jason Ish about 8 years ago

  • Target version changed from 70 to 3.0.1RC1
Actions

Also available in: Atom PDF