Project

General

Profile

Actions

Feature #962

closed

Can I log the mac address of the source?

Added by 冠宇 陳 about 11 years ago. Updated about 4 years ago.

Status:
Closed
Priority:
Normal
Target version:
Effort:
Difficulty:
Label:

Description

Knowing the mac address can help us about knowing the attacker. So can suricata log the mac address? Like the -e option in snort? Thanks for help.


Related issues 2 (1 open1 closed)

Related to Suricata - Task #2309: SuriCon 2017 brainstormAssignedVictor JulienActions
Related to Suricata - Bug #1711: eve: Ethernet Header Missing From Packet FieldClosedActions
Actions

Also available in: Atom PDF