Project

General

Profile

Actions

Bug #9403

closed

Suricata - Checkbox 'Traffic Flows' enables logging for both logging formats

Added by Julian Wecke about 5 years ago. Updated over 4 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
-
Category:
Suricata
Target version:
-
Start date:
03/16/2019
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Affected Version:
Affected Plus Version:
Affected Architecture:

Description

The checkbox 'Traffic Flows' in 'EVE Output Settings' now enables netflow and flow output. (net)flow logging is quite heavy. Usually you log either flow or netflow but not both simultaneously. The webgui should give an option to choose the format. Easiest way would be a 2nd checkbox. Such would still allow to log in both formats when somebody has a need for it.

Actions #1

Updated by Bill Meeks about 5 years ago

This is fixed in the latest 4.1.3 version of the Suricata package that is currently posted for review and merge into the pfSense 2.5 DEVELOPMENT tree. Here is the pull request: [https://github.com/pfsense/FreeBSD-ports/pull/631] was merged on March 22, 2019.

This issue is RESOLVED.

Actions #2

Updated by Jim Pingle over 4 years ago

  • Status changed from New to Resolved
Actions

Also available in: Atom PDF