Project

General

Profile

Actions

Feature #2964

closed
KJ

Near real time flow log

Feature #2964: Near real time flow log

Added by kai jiang almost 7 years ago. Updated over 6 years ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Target version:
-
Effort:
Difficulty:
Label:

Description

Currently the flows are only logged when it's timed out. It's not enough for real time monitoring. Could suricata report the flow status periodically to the log? So that the backend could get the flow information in a near real time way


Related issues 1 (1 open0 closed)

Is duplicate of Suricata - Feature #2301: netflow: dump records at intervalFeedbackJason IshActions

VJ Updated by Victor Julien almost 7 years ago Actions #1

  • Status changed from New to Feedback
  • Assignee set to Jason Ish

Jason you've looked into this before. Could you share your thoughts? Not sure if we have an older ticket about it.

VJ Updated by Victor Julien over 6 years ago Actions #2

  • Target version set to TBD

VJ Updated by Victor Julien over 6 years ago Actions #3

  • Is duplicate of Feature #2301: netflow: dump records at interval added

VJ Updated by Victor Julien over 6 years ago Actions #4

  • Status changed from Feedback to Closed
  • Assignee deleted (Jason Ish)
  • Target version deleted (TBD)
Actions

Also available in: PDF Atom