Project

General

Profile

Actions

Documentation #6566

closed
JF PA

userguide: add description for missing EVE krb fields

Documentation #6566: userguide: add description for missing EVE krb fields

Added by Juliana Fajardini Reichow over 2 years ago. Updated 8 months ago.

Status:
Closed
Priority:
Normal
Target version:
Affected Versions:
Effort:
Difficulty:
Label:
Beginner

Description

While we have some fields covered in https://docs.suricata.io/en/latest/output/eve/eve-json-format.html#kerberos-fields,
many are still missing:

krb5.cname
krb5.encryption
krb5.error_code
krb5.failed_request
krb5.msg_type
krb5.ticket_encryption
krb5.ticket_weak_encryption
krb5.weak_encryption

This task also includes documenting the json schema for krb.


Subtasks 1 (0 open1 closed)

Documentation #6582: userguide: add description for missing EVE krb fields (7.0.x backport)ClosedPhilippe AntoineActions

Related issues 2 (1 open1 closed)

Related to Suricata - Documentation #6478: schema: add missing fieldsAssignedOISF DevActions
Related to Suricata - Bug #7530: Kerberos: sname/cname code and suricata documentation both wrongRejectedOISF DevActions

JF Updated by Juliana Fajardini Reichow over 2 years ago Actions #1

  • Label Beginner added

JF Updated by Juliana Fajardini Reichow over 2 years ago Actions #2

  • Description updated (diff)

JF Updated by Juliana Fajardini Reichow over 2 years ago Actions #3

CA Updated by Comfort Amaechi over 2 years ago Actions #4

Can I claim this issue

JF Updated by Juliana Fajardini Reichow over 2 years ago Actions #5

Comfort Amaechi wrote in #note-4:

Can I claim this issue

Hi there!

I see that you are also discussing https://redmine.openinfosecfoundation.org/issues/6572 do you have any preferences about which one to claim first?

OT Updated by OISF Ticketbot over 2 years ago Actions #6

  • Subtask #6582 added

OT Updated by OISF Ticketbot over 2 years ago Actions #7

  • Label deleted (Needs backport to 7.0)

VJ Updated by Victor Julien over 1 year ago Actions #8

  • Target version changed from 8.0.0-beta1 to 8.0.0-rc1

VJ Updated by Victor Julien 11 months ago Actions #9

  • Target version changed from 8.0.0-rc1 to 8.0.0

VJ Updated by Victor Julien 10 months ago Actions #10

  • Status changed from New to Assigned
  • Assignee changed from OISF Dev to Philippe Antoine

PA Updated by Philippe Antoine 10 months ago Actions #11

  • Related to Bug #7530: Kerberos: sname/cname code and suricata documentation both wrong added

PA Updated by Philippe Antoine 10 months ago Actions #12

  • Status changed from Assigned to In Review

PA Updated by Philippe Antoine 10 months ago Actions #13

  • Status changed from In Review to Resolved

VJ Updated by Victor Julien 10 months ago Actions #14

  • Target version changed from 8.0.0 to 8.0.1

VJ Updated by Victor Julien 10 months ago Actions #15

  • Target version changed from 8.0.1 to 8.0.0

PA Updated by Philippe Antoine 8 months ago Actions #16

  • Status changed from Resolved to Closed
Actions

Also available in: PDF Atom