Project

General

Profile

Feature #3701

eve: add tenant_id in eve-log for other types than alert

Added by Justin Ossevoort about 1 year ago. Updated 6 months ago.

Status:
Closed
Priority:
Normal
Target version:
Effort:
Difficulty:
Label:

Description

We're in the process of adopting multi-tenant support in Suricata and we've run in to the issue that the tenant_id is only being logged for alert type logging. But we also process other event types, which will also have to be sorted according to respective tenants.

#1

Updated by Victor Julien 6 months ago

  • Tracker changed from Bug to Feature
  • Subject changed from No tenant_id in eve-log for other types than alert to eve: add tenant_id in eve-log for other types than alert
  • Status changed from New to Closed
  • Assignee set to Justin Ossevoort
  • Target version set to 7.0rc1

Also available in: Atom PDF