Project

General

Profile

Actions

Task #6849

open

brainstorm: should certain eve ouput types be removed (eg syslog)

Added by Juliana Fajardini Reichow 10 months ago. Updated 4 months ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

Some eve filetypes do not allow large enough records for even common use like stats records (8k).
Should we move to something like file instead of using the standard syslog output;
maybe allow EVE filetype to be configurable in terms of what verbosity or other aspects.


Related issues 1 (1 open0 closed)

Related to Suricata - Task #6851: eve/syslog: stats message too long for many default configurationsNewOISF DevActions
Actions #1

Updated by Juliana Fajardini Reichow 10 months ago

  • Description updated (diff)
Actions #2

Updated by Jason Ish 10 months ago

  • Related to Task #6851: eve/syslog: stats message too long for many default configurations added
Actions #3

Updated by Jason Ish 4 months ago

  • Subject changed from brainstorm: should certain ouput types be removed (eg syslog) to brainstorm: should certain eve ouput types be removed (eg syslog)
Actions

Also available in: Atom PDF