Playbook creates wrong "SO Elasticsearch query" for DNS queries #11473
-
Version2.4.10 Installation MethodSecurity Onion ISO image Descriptionconfiguration Installation TypeStandalone Locationon-prem with Internet access Hardware SpecsExceeds minimum requirements CPU12 RAM128GB Storage for /100GB Storage for /nsm2TB Network Traffic Collectionspan port Network Traffic Speeds1Gbps to 10Gbps StatusYes, all services on all nodes are running OK Salt StatusNo, there are no failures LogsNo, there are no additional clues DetailHi the Example:
results in this SO Elasticsearch query: in With this error, all DNS SO Elasticsearch query fails. Can this please be fixed soon Guidelines
|
Beta Was this translation helpful? Give feedback.
Replies: 4 comments 2 replies
-
Hi there, |
Beta Was this translation helpful? Give feedback.
-
I have created an issue to track a fix for this: #11498 |
Beta Was this translation helpful? Give feedback.
-
hi @defensivedepth |
Beta Was this translation helpful? Give feedback.
-
@StefanSa Can you confirm that you are using 2.3 or 2.4? |
Beta Was this translation helpful? Give feedback.
Yes, this is something we are considering.