[Bro-Dev] #944: @bro-meta index in ES writer

Bro Tracker bro at tracker.bro-ids.org
Thu Feb 7 07:52:58 PST 2013


#944: @bro-meta index in ES writer
---------------------+------------------------
 Reporter:  seth     |      Owner:
     Type:  Problem  |     Status:  new
 Priority:  Low      |  Milestone:  Bro2.2
Component:  Bro      |    Version:  git/master
 Keywords:           |
---------------------+------------------------
 The elasticsearch writer isn't creating/modifying the required (for
 Brownian) @bro-meta index when using the ReLog script to import old logs
 because rotation is disabled when importing logs.  For now the right
 answer is to probably just leave off out the start and end fields and
 write to the index in the UpdateIndex method if rotation is disabled.

-- 
Ticket URL: <http://tracker.bro-ids.org/bro/ticket/944>
Bro Tracker <http://tracker.bro-ids.org/bro>
Bro Issue Tracker



More information about the bro-dev mailing list