Actions
Feature #7099
openAddition of total bytes to the flow logs
Description
We currently have to server,to client bytes in the flow logs.
It is very useful to have a total bytes filed that has the total for that flow in the flow log.
It makes it easier for aggregations and searches based on the event_type flow that Suricata has in a SIEM.
Updated by Philippe Antoine 4 months ago
Is not that for post processing tools ? (and not be too verbose with duplicate info)
Actions