logging/alert: Expand alert logging description

Clarify the configuration requirements for alerts and http-body logging.
pull/4290/head
Jeff Lucovsky 6 years ago committed by Victor Julien
parent 354074bac6
commit af615baaf7

@ -148,9 +148,9 @@ outputs:
# payload-buffer-size: 4kb # max size of payload buffer to output in eve-log
# payload-printable: yes # enable dumping payload in printable (lossy) format
# packet: yes # enable dumping of packet (without stream segments)
# http-body: yes # enable dumping of http body in Base64
# http-body-printable: yes # enable dumping of http body in printable format
# metadata: no # enable inclusion of app layer metadata with alert. Default yes
# http-body: yes # Requires metadata; enable dumping of http body in Base64
# http-body-printable: yes # Requires metadata; enable dumping of http body in printable format
# Enable the logging of tagged packets for rules using the
# "tag" keyword.

Loading…
Cancel
Save