Bug #6633
closed
- Related to Bug #5769: Incomplete values for .stats."app_layer".flow.proto added
jq 'select(.event_type=="flow" and .app_proto=="enip") | .app_proto' log/eve.json | wc -l
gives 1 ENIP detection-only flow
But
jq 'select(.event_type=="stats") | .stats."app_layer".flow.enip' log/eve.json
gives 0
- Status changed from New to In Review
- Label Needs backport to 7.0 added
- Label deleted (
Needs backport to 7.0)
- Status changed from In Review to Resolved
- Status changed from Resolved to Closed
Also available in: Atom
PDF