Project

General

Profile

Actions

Documentation #6566

open

userguide: add description for missing EVE krb fields

Added by Juliana Fajardini Reichow 5 months ago. Updated 5 months ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:
Beginner

Description

While we have some fields covered in https://docs.suricata.io/en/latest/output/eve/eve-json-format.html#kerberos-fields,
many are still missing:

krb5.cname
krb5.encryption
krb5.error_code
krb5.failed_request
krb5.msg_type
krb5.ticket_encryption
krb5.ticket_weak_encryption
krb5.weak_encryption

This task also includes documenting the json schema for krb.


Subtasks 1 (1 open0 closed)

Documentation #6582: userguide: add description for missing EVE krb fields (7.0.x backport)AssignedOISF DevActions

Related issues 1 (1 open0 closed)

Related to Suricata - Documentation #6478: schema: add missing fieldsNewCommunity TicketActions
Actions #1

Updated by Juliana Fajardini Reichow 5 months ago

  • Label Beginner added
Actions #2

Updated by Juliana Fajardini Reichow 5 months ago

  • Description updated (diff)
Actions #3

Updated by Juliana Fajardini Reichow 5 months ago

Actions #4

Updated by Comfort Amaechi 5 months ago

Can I claim this issue

Actions #5

Updated by Juliana Fajardini Reichow 5 months ago

Comfort Amaechi wrote in #note-4:

Can I claim this issue

Hi there!

I see that you are also discussing https://redmine.openinfosecfoundation.org/issues/6572 do you have any preferences about which one to claim first?

Actions #6

Updated by OISF Ticketbot 5 months ago

  • Subtask #6582 added
Actions #7

Updated by OISF Ticketbot 5 months ago

  • Label deleted (Needs backport to 7.0)
Actions

Also available in: Atom PDF