Skip to content

Use Zeek v3.2.0-dev-brim4 to enable geolocation support#932

Merged
philrz merged 2 commits intomasterfrom
geolocation
Jul 16, 2020
Merged

Use Zeek v3.2.0-dev-brim4 to enable geolocation support#932
philrz merged 2 commits intomasterfrom
geolocation

Conversation

@philrz
Copy link
Contributor

@philrz philrz commented Jul 16, 2020

Closes #931.

@philrz philrz requested review from a team, alfred-landrum and henridf July 16, 2020 17:26
@philrz philrz self-assigned this Jul 16, 2020
@philrz philrz requested a review from mikesbrown July 16, 2020 17:29
Copy link
Contributor

@mikesbrown mikesbrown left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

There's an interesting case where Brim is not showing the "fully qualified" geo record, but instead presenting geo as two records: orig and resp. I don't think that should block this. I filed #933 .

@philrz philrz merged commit 1241dec into master Jul 16, 2020
@philrz philrz deleted the geolocation branch July 16, 2020 21:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Include geolocation data in Zeek logs generated from pcaps

2 participants