Project

General

Profile

Actions

Bug #4440

closed

eve: log if flow had gap

Added by Eric Leblond over 1 year ago. Updated 2 months ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

It is currently not possible to know if a flow had a gap. As a result it may be hard to debug a suricata setup to know which flow are badly captured and maybe should be bypassed/dropped.

Actions #1

Updated by Victor Julien 6 months ago

  • Target version set to 7.0.0-beta1
Actions #2

Updated by Victor Julien 6 months ago

  • Subject changed from Log if flow had gap to eve: log if flow had gap
Actions #3

Updated by Victor Julien 2 months ago

  • Status changed from In Review to Closed
Actions

Also available in: Atom PDF