[Bro] Bro Elasticsearch 2+

Seth Hall seth at icir.org
Sat Nov 28 21:27:06 PST 2015


> On Nov 27, 2015, at 4:14 PM, Daniel Guerra <daniel.guerra69 at gmail.com> wrote:
> 
> There have been some issues like timestamp, the elstic 2.0 no dot
> and the name/type changes in the logging

There may be more updates later, but I just pushed a fix for the fields in the SIP log that were accidentally strings instead of counts (along with some other cleanup).

  .Seth

--
Seth Hall
International Computer Science Institute
(Bro) because everyone has a network
http://www.bro.org/




More information about the Bro mailing list