Project

General

Profile

Actions

Bug #3835

closed

Suricata applayer anomaly eve-log

Added by Lukas Dolezel over 4 years ago. Updated over 4 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
-
Affected Versions:
Effort:
Difficulty:
Label:
Needs backport to 5.0

Description

When Suricata has configured more than one eve-log output with applayer anomaly, then only the first output gets applayer messages.

Confirmed here
https://forum.suricata.io/t/applayer-anomaly-bug/422/2


Related issues 1 (0 open1 closed)

Copied to Suricata - Bug #3854: Suricata applayer anomaly eve-logClosedJeff LucovskyActions
Actions #1

Updated by Jeff Lucovsky over 4 years ago

  • Status changed from New to In Review
  • Assignee set to Jeff Lucovsky
Actions #2

Updated by Jeff Lucovsky over 4 years ago

  • Label Needs backport to 5.0 added
Actions #3

Updated by Jeff Lucovsky over 4 years ago

  • Copied to Bug #3854: Suricata applayer anomaly eve-log added
Actions #4

Updated by Jeff Lucovsky over 4 years ago

  • Status changed from In Review to Closed
Actions

Also available in: Atom PDF