mirror of https://github.com/OISF/suricata
You cannot select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Elastic search didn't accept the 'hassh' and 'hassh.string'. It would see the first 'hassh' as a string and split the second key into a object 'hassh' with a string member 'string'. So two different types for 'hassh', so it rejected it. This patch mimics the ja3(s) logging by creating a 'hassh' object with 2 members: 'hash', which holds the md5 representation, and 'string' which holds the string representation. |
5 years ago | |
---|---|---|
.. | ||
eve | 5 years ago | |
files-json/elk | ||
custom-http-logging.rst | ||
custom-tls-logging.rst | 6 years ago | |
index.rst | ||
log-rotation.rst | 5 years ago | |
lua-output.rst | 7 years ago | |
syslog-alerting-comp.rst | 7 years ago |