[Oisf-users] Enabling EVE log

Nafisa Mandliwala nafisa.mandliwala at gmail.com
Wed Jul 24 03:53:51 UTC 2019


I had hit the same issue. The problem was that I didn't compile with lib
jansson.

Your configure command should have-

--with-libjansson-includes=<jansson-install-dir>/include
--with-libjansson-libraries=<jansson-install-dir>/lib

On Tue, Jul 23, 2019 at 2:35 PM Chris Ford <crford at gmail.com> wrote:

> Do you have the JSON related dependencies installed?  Don’t know what
> you’re running on, but for Ubuntu they are “libjansson-dev libjansson4”
>
> On Tue, Jul 23, 2019 at 3:04 PM Andreas Herz <aherz at oisf.net> wrote:
>
>> On 23/07/19 at 18:58, Hovsep Levi wrote:
>> > I'm trying to enable the EVE log in conjunction with fast.log and for
>> some
>> > reason it doesn't work.
>>
>> Can you paste suricata --build-info?
>> Also try to start suricata with -vvv so we might catch any issues there.
>>
>> --
>> Andreas Herz
>> _______________________________________________
>> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
>> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
>> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
>>
>> Conference: https://suricon.net
>> Trainings: https://suricata-ids.org/training/
>
> --
> Chris Ford - crford at gmail.com
> GPG Key - https://keybase.io/crford
> _______________________________________________
> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
>
> Conference: https://suricon.net
> Trainings: https://suricata-ids.org/training/
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20190723/06203648/attachment.html>


More information about the Oisf-users mailing list