Project

General

Profile

Bug #2764

dns logging v1 vs v2

Added by Peter Manev 20 days ago.

Status:
New
Priority:
Normal
Assignee:
-
Target version:
-
Affected Versions:
Effort:
Difficulty:

Description

Putting a place holder for discussion following up an IRC discussion with Jason Ish.

It seems DNS v2 logging differs than v1 in the way that if you would like to specify a custom type logging - https://github.com/OISF/suricata/blob/master/suricata.yaml.in#L188 it is done per type of request not the answer.
It could also be a bit misleading as a user might expect to be able to log in just a or aaaa answers but that is not the case in v2.

Also available in: Atom PDF