Project

General

Profile

Actions

Feature #6666

closed
HA HA

Task #4772: tracking: parity between fields logged and fields available for detection

Feature #5642: DNS: parity between log fields and detection

dns: add keyword for dns rrtype: dns.rrtype

Feature #6666: dns: add keyword for dns rrtype: dns.rrtype

Added by Hadiqa Alamdar Bukhari about 2 years ago. Updated almost 2 years ago.

Status:
Closed
Priority:
Normal
Target version:
Effort:
Difficulty:
Label:

Description

The rtype field is much like opcode or rcode.

HA Updated by Hadiqa Alamdar Bukhari about 2 years ago Actions #1

  • Related to Feature #5642: DNS: parity between log fields and detection added

SB Updated by Shivani Bhardwaj about 2 years ago Actions #2

  • Parent task set to #5642

SB Updated by Shivani Bhardwaj about 2 years ago Actions #3

  • Status changed from New to Assigned
  • Target version changed from TBD to 8.0.0-beta1

HA Updated by Hadiqa Alamdar Bukhari about 2 years ago Actions #4

  • Status changed from Assigned to In Progress

HA Updated by Hadiqa Alamdar Bukhari about 2 years ago Actions #5

  • Subject changed from dns: add keyword for dns rtype: dns.rtype to dns: add keyword for dns rrtype: dns.rrtype

JF Updated by Juliana Fajardini Reichow almost 2 years ago Actions #6

  • Status changed from In Progress to Closed
Actions

Also available in: PDF Atom