Suricata - Checkbox 'Traffic Flows' enables logging for both logging formats
The checkbox 'Traffic Flows' in 'EVE Output Settings' now enables netflow and flow output. (net)flow logging is quite heavy. Usually you log either flow or netflow but not both simultaneously. The webgui should give an option to choose the format. Easiest way would be a 2nd checkbox. Such would still allow to log in both formats when somebody has a need for it.
#1 Updated by Bill Meeks 10 months ago
This is fixed in the latest 4.1.3 version of the Suricata package that
is currently posted for review and merge into the pfSense 2.5 DEVELOPMENT tree. Here is the pull request: [https://github.com/pfsense/FreeBSD-ports/pull/631] was merged on March 22, 2019.
This issue is RESOLVED.