diff --git a/doc/userguide/partials/eve-log.yaml b/doc/userguide/partials/eve-log.yaml index 88fbd52601..178281ba4f 100644 --- a/doc/userguide/partials/eve-log.yaml +++ b/doc/userguide/partials/eve-log.yaml @@ -163,6 +163,14 @@ outputs: totals: yes # stats for all threads merged together threads: no # per thread stats deltas: no # include delta values + - dhcp: + # DHCP logging requires Rust. + enabled: @rust_config_enabled@ + # When extended mode is on, all DHCP messages are logged + # with full detail. When extended mode is off (the + # default), just enough information to map a MAC address + # to an IP address is logged. + extended: no # bi-directional flows - flow # uni-directional flows diff --git a/doc/userguide/rules/intro.rst b/doc/userguide/rules/intro.rst index 64604f0970..ab71a5c20d 100644 --- a/doc/userguide/rules/intro.rst +++ b/doc/userguide/rules/intro.rst @@ -81,6 +81,7 @@ you can pick from. These are: * ikev2 (depends on rust availability) * krb5 (depends on rust availability) * ntp (depends on rust availability) +* dhcp (depends on rust availability) The availability of these protocols depends on whether the protocol is enabled in the configuration file suricata.yaml.