Skip to content

Conversation

maldwg
Copy link
Collaborator

@maldwg maldwg commented Sep 24, 2025

No description provided.

@maldwg
Copy link
Collaborator Author

maldwg commented Sep 24, 2025

Feel free to have a look at the changes and if you have any comments for improvements or spotted an error or something missing, just say it :)

@maldwg
Copy link
Collaborator Author

maldwg commented Sep 24, 2025

current Todos:

  • remove examplary configs from confg.yaml
  • Evaluate if we want to allow zeek to also process CSV data and not only PCAP/live traffic
  • Remove test_pcaps and add it to .gitignore to not blow up the repository
  • "Fix" response_ip for logcollector: Issue is that the current data does not feature frequently loglines with this property that's why it is commented out

@stefanDeveloper stefanDeveloper added the enhancement New feature or request label Sep 24, 2025
@stefanDeveloper stefanDeveloper added this to the Full IDS milestone Sep 24, 2025
@stefanDeveloper stefanDeveloper linked an issue Sep 26, 2025 that may be closed by this pull request
@stefanDeveloper
Copy link
Owner

Nice! Major improvement :)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Future Release: Full IDS support for more protocols
2 participants