Project

General

Profile

Actions

Feature #2964

closed

Near real time flow log

Added by kai jiang almost 5 years ago. Updated over 4 years ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Target version:
-
Effort:
Difficulty:
Label:

Description

Currently the flows are only logged when it's timed out. It's not enough for real time monitoring. Could suricata report the flow status periodically to the log? So that the backend could get the flow information in a near real time way


Related issues 1 (1 open0 closed)

Is duplicate of Suricata - Feature #2301: netflow: dump records at intervalFeedbackJason IshActions
Actions #1

Updated by Victor Julien almost 5 years ago

  • Status changed from New to Feedback
  • Assignee set to Jason Ish

Jason you've looked into this before. Could you share your thoughts? Not sure if we have an older ticket about it.

Actions #2

Updated by Victor Julien over 4 years ago

  • Target version set to TBD
Actions #3

Updated by Victor Julien over 4 years ago

  • Is duplicate of Feature #2301: netflow: dump records at interval added
Actions #4

Updated by Victor Julien over 4 years ago

  • Status changed from Feedback to Closed
  • Assignee deleted (Jason Ish)
  • Target version deleted (TBD)
Actions

Also available in: Atom PDF