Project

General

Profile

Actions

Optimization #3707

open

Convert JSON Loggers to JsonBuilder

Added by Jason Ish almost 4 years ago. Updated 9 months ago.

Status:
Assigned
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

Parent task for converting Eve/JSON loggers to JsonBuilder.


Subtasks 19 (2 open17 closed)

Optimization #3708: Convert SSH logging to JsonBuilderClosedPhilippe AntoineActions
Optimization #3709: Convert DNP3 logging to JsonBuilderClosedJason IshActions
Optimization #3710: Convert SMTP logging to JsonBuilderClosedJason IshActions
Optimization #3711: Convert NFS logging to JsonBuilderClosedVictor JulienActions
Optimization #3712: Convert SMB logging to JsonBuilderClosedShivani BhardwajActions
Optimization #3713: Convert RFB logging to JsonBuilderClosedJason IshActions
Optimization #3714: Convert FTP logging to JsonBuilderClosedJeff LucovskyActions
Optimization #3715: Convert RDP logging to JsonBuilderClosedZach KellyActions
Optimization #3754: Convert KRB to JsonBuilderClosedShivani BhardwajActions
Optimization #3755: Convert IKEv2 to JsonBuilderClosedJeff LucovskyActions
Optimization #3756: Convert SNMP to JsonBuilderClosedShivani BhardwajActions
Optimization #3757: Convert Netflow to JsonBuilderClosedJason IshActions
Optimization #3763: JsonBuilder - Update Prelude output to handle Alert conversion to JsonBuilderRejectedActions
Optimization #3764: Convert TFTP to JsonBuilderClosedJeff LucovskyActions
Optimization #3765: Convert Templates to JsonBuilderClosedJason IshActions
Optimization #3766: Convert Stats to JsonBuilderIn ProgressJuliana Fajardini ReichowActions
Optimization #3838: Convert 'vars' (metadata logging) to JsonBuilderClosedVictor JulienActions
Optimization #3839: Convert profiling rule match dumps to JsonBuilderClosedVictor JulienActions
Optimization #4937: Convert Rule Profile JSON output to JsonBuilderNewOISF DevActions

Related issues 2 (1 open1 closed)

Related to Suricata - Bug #2726: writing large number of json events on high speed traffic results in packet dropsClosedJason IshActions
Related to Suricata - Documentation #4557: Add document about JsonBuilderIn ProgressJuliana Fajardini ReichowActions
Actions #1

Updated by Victor Julien almost 4 years ago

  • Status changed from New to Assigned
Actions #2

Updated by Victor Julien over 3 years ago

  • Related to Bug #2726: writing large number of json events on high speed traffic results in packet drops added
Actions #3

Updated by Victor Julien over 3 years ago

  • Target version changed from 6.0.0beta1 to 7.0.0-beta1

Stats and other remaining conversion will have to be post-6.

Actions #4

Updated by Juliana Fajardini Reichow over 2 years ago

Actions #5

Updated by Victor Julien over 1 year ago

  • Target version changed from 7.0.0-beta1 to 7.0.0-rc1
Actions #6

Updated by Victor Julien about 1 year ago

  • Target version changed from 7.0.0-rc1 to 8.0.0-beta1
Actions #7

Updated by Philippe Antoine 9 months ago

I am afraid there is still a bit more use of libjansson, especially to parse unix socket commands...

Actions

Also available in: Atom PDF