Project

General

Profile

Actions

Bug #275

closed

Alert classification issue ?

Added by Peter VE over 11 years ago. Updated over 11 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

I have set up suricata 1.1 beta1, barnyard2, logging events into snorby.
Everything works well, but I noticed that all events are logged as "low severity".

I replaced suricata with snort, used the same barnyard2 engine, sending events into the same snorby instance.
In that configuration, events are classified correctly.

Is this a known issue ? Any way I can troubleshoot/fix this myself ?


Files

Actions

Also available in: Atom PDF