Project

General

Profile

Actions

Task #6849

open

brainstorm: should certain eve ouput types be removed (eg syslog)

Added by Juliana Fajardini Reichow 9 months ago. Updated 3 months ago.

Status:
New
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

Some eve filetypes do not allow large enough records for even common use like stats records (8k).
Should we move to something like file instead of using the standard syslog output;
maybe allow EVE filetype to be configurable in terms of what verbosity or other aspects.


Related issues 1 (1 open0 closed)

Related to Suricata - Task #6851: eve/syslog: stats message too long for many default configurationsNewOISF DevActions
Actions

Also available in: Atom PDF