Project

General

Profile

Actions

Task #4772

open

tracking: parity between fields logged and fields available for detection

Added by Victor Julien about 1 year ago. Updated 17 days ago.

Status:
Assigned
Priority:
Normal
Assignee:
Target version:
-
Effort:
Difficulty:
Label:

Related issues 3 (3 open0 closed)

Related to Task #4762: Suricon 2021 brainstormAssignedVictor JulienActions
Related to Feature #4174: tracking: app-layer frame inspection supportIn ProgressVictor JulienActions
Related to Feature #5642: DNS: parity between log fields and detectionNewOISF DevActions
Actions #1

Updated by Victor Julien about 1 year ago

  • Related to Feature #2021: doc: sha256 filesum extraction missing in documentation added
Actions #2

Updated by Victor Julien about 1 year ago

  • Related to deleted (Feature #2021: doc: sha256 filesum extraction missing in documentation)
Actions #3

Updated by Victor Julien about 1 year ago

  • Related to Task #4762: Suricon 2021 brainstorm added
Actions #4

Updated by Victor Julien 7 months ago

  • Related to Feature #4174: tracking: app-layer frame inspection support added
Actions #5

Updated by Jason Ish 21 days ago

  • Related to Feature #5642: DNS: parity between log fields and detection added
Actions #6

Updated by Philippe Antoine 17 days ago

My next thing here is to look into the schema.json for integers where there are no signature keywords, starting by the flow.nbpackets or such (as I did flow.age last)

Actions

Also available in: Atom PDF