Project

General

Profile

Bug #9403

Suricata - Checkbox 'Traffic Flows' enables logging for both logging formats

Added by Julian Wecke 3 months ago. Updated 3 months ago.

Status:
New
Priority:
Normal
Assignee:
-
Category:
Suricata
Target version:
-
Start date:
03/16/2019
Due date:
% Done:

0%

Estimated time:
Affected Version:
Affected Architecture:

Description

The checkbox 'Traffic Flows' in 'EVE Output Settings' now enables netflow and flow output. (net)flow logging is quite heavy. Usually you log either flow or netflow but not both simultaneously. The webgui should give an option to choose the format. Easiest way would be a 2nd checkbox. Such would still allow to log in both formats when somebody has a need for it.

History

#1 Updated by Bill Meeks 3 months ago

This is fixed in the latest 4.1.3 version of the Suricata package that is currently posted for review and merge into the pfSense 2.5 DEVELOPMENT tree. Here is the pull request: [https://github.com/pfsense/FreeBSD-ports/pull/631] was merged on March 22, 2019.

This issue is RESOLVED.

Also available in: Atom PDF