Actions
Feature #10472
closedBlocked host alert table break out by timestamp and type to allow sorting by date
Status:
Resolved
Priority:
Low
Assignee:
-
Category:
Suricata
Target version:
-
Start date:
04/17/2020
Due date:
% Done:
0%
Estimated time:
Plus Target Version:
Description
The blocked list doesn't by nature sort by last hit or date of creation so I have to read every entry for the most relevant timestamp when determining a service interruption or tying to an event. The ability to view this list sorted by time would allow me to narrow down the host I'm looking for faster.
Actions