[Oisf-users] Just need DNS and IPS logs in json format

Blason R blason16 at gmail.com
Sat Mar 24 04:13:53 UTC 2018


Hi Guys,

I was reading through the suricata docs and found pretty exhaustive. Can
someone please confirm I just need DNS logs and IPS blocking logs in
eve.json.

The current eve.json has lot of noise and filling up my disk space pretty
fast hence need to know the settings so that I can start receiving only DNS
and IPS logs and exclude that noise.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20180324/966a0034/attachment.html>


More information about the Oisf-users mailing list