Project

General

Profile

Actions

Feature #4853

open

eve: Add information about Suricata version

Added by Juliana Fajardini Reichow almost 3 years ago. Updated 3 months ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

Having that information on the eve log could be useful when trying to offer support,
since that file is the one folks often share, when some behavior is not as expected.

We could then skip asking that, if that info was already available.

Victor suggests that a way of achieving that would be to enable suricata.log by default and add that info to eve.json

It has also been discussed the possibility of adding a first record to the logs that would contain some of this type of info in a special record type


Related issues 2 (2 open0 closed)

Related to Suricata - Task #6443: Suricon 2023 brainstormAssignedVictor JulienActions
Related to Suricata - Task #2167: tracking: eve enhancementsNewOISF DevActions
Actions

Also available in: Atom PDF