Project

General

Profile

Actions

Documentation #6566

open

userguide: add description for missing EVE krb fields

Added by Juliana Fajardini Reichow about 1 year ago. Updated about 1 year ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:
Beginner

Description

While we have some fields covered in https://docs.suricata.io/en/latest/output/eve/eve-json-format.html#kerberos-fields,
many are still missing:

krb5.cname
krb5.encryption
krb5.error_code
krb5.failed_request
krb5.msg_type
krb5.ticket_encryption
krb5.ticket_weak_encryption
krb5.weak_encryption

This task also includes documenting the json schema for krb.


Subtasks 1 (1 open0 closed)

Documentation #6582: userguide: add description for missing EVE krb fields (7.0.x backport)AssignedOISF DevActions

Related issues 1 (1 open0 closed)

Related to Suricata - Documentation #6478: schema: add missing fieldsNewCommunity TicketActions
Actions #1

Updated by Juliana Fajardini Reichow about 1 year ago

  • Label Beginner added
Actions #2

Updated by Juliana Fajardini Reichow about 1 year ago

  • Description updated (diff)
Actions #3

Updated by Juliana Fajardini Reichow about 1 year ago

Actions #4

Updated by Comfort Amaechi about 1 year ago

Can I claim this issue

Actions #5

Updated by Juliana Fajardini Reichow about 1 year ago

Comfort Amaechi wrote in #note-4:

Can I claim this issue

Hi there!

I see that you are also discussing https://redmine.openinfosecfoundation.org/issues/6572 do you have any preferences about which one to claim first?

Actions #6

Updated by OISF Ticketbot about 1 year ago

  • Subtask #6582 added
Actions #7

Updated by OISF Ticketbot about 1 year ago

  • Label deleted (Needs backport to 7.0)
Actions

Also available in: Atom PDF