[Bro] loging to elasticsearch git clone

Seth Hall seth at icir.org
Fri May 1 21:00:39 PDT 2015


> On May 1, 2015, at 6:29 PM, Daniel Guerra <daniel.guerra69 at gmail.com> wrote:
> 
> Hopefully bro can log a YYYY:mm:dd HH:MM:ss format for ts, work in progress …….

It can. :)

If you want to make JSON logs globally into ISO8601, you can do...
redef LogAscii::json_timestamps = JSON::TS_ISO8601;

  .Seth

--
Seth Hall
International Computer Science Institute
(Bro) because everyone has a network
http://www.bro.org/

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 495 bytes
Desc: Message signed with OpenPGP using GPGMail
Url : http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20150502/80b71404/attachment.bin 


More information about the Bro mailing list