Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

GUI syslog parser/decoder #6462

Open
2 tasks
No1234DDgg opened this issue Mar 1, 2024 · 0 comments
Open
2 tasks

GUI syslog parser/decoder #6462

No1234DDgg opened this issue Mar 1, 2024 · 0 comments

Comments

@No1234DDgg
Copy link

No1234DDgg commented Mar 1, 2024

Description

A way for non Reggex Users to write a syslog parser/decoder via the web-GUI.
Most of the time it is just a missmatch between sending syslog definitions and ecpected definitions.
A Simple translational layer like rule_id = ruleID would be very usefull

Tasks

  • GUI decoder configuration
  • simple "translational layer decoder"

Additional information

Even the Big SIEM Player like FortiSIEM/Splunk dont provide a feature like this.

thx guys

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant