Actions
Feature #6666
closedTask #4772: tracking: parity between fields logged and fields available for detection
Feature #5642: DNS: parity between log fields and detection
dns: add keyword for dns rrtype: dns.rrtype
Effort:
Difficulty:
Label:
Description
The rtype field is much like opcode or rcode.
Actions