Project

General

Profile

Actions

Documentation #4708

open

DevGuide: Add Eve Output Plugins

Added by Jason Ish over 2 years ago. Updated about 2 months ago.

Status:
New
Priority:
High
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

Eve output plugins work pretty well in 6.0 and git master but need to be documented. Now that I think we have the API good for 7.0 we can documentat it as only minor (if any) changes will likely be made before final release.

Example plugin: https://github.com/OISF/suricata/tree/master/examples/plugins/c-json-filetype

The guide should be more about the API (registration functions and API) then about how to build and install plugins which should probably be in the user guide and not covered here.

Actions #1

Updated by Victor Julien over 1 year ago

  • Priority changed from Normal to High
Actions #2

Updated by Juliana Fajardini Reichow about 1 year ago

  • Target version set to 7.0.0-rc2
Actions #3

Updated by Victor Julien about 1 year ago

  • Target version changed from 7.0.0-rc2 to 8.0.0-beta1
Actions #4

Updated by Jason Ish about 2 months ago

  • Description updated (diff)

Updated description to point to the in-tree example plugins.

Actions

Also available in: Atom PDF