Skip to content
Discussion options

You must be logged in to vote

@utkarshborawake You must upgrade to at least .190 to get the features. However if you are upgrading I would suggest the latest .280 since there have been several critical security fixes since .170. Also keep in mind that 2.3 will be EOL in April and these ICS parsers are integrated into 2.4.

@Nazmin-Gilki Unless you are overwriting something in your zeek local file the support is turned on by default.

Replies: 1 comment 5 replies

Comment options

You must be logged in to vote
5 replies
@utkarshborawake
Comment options

@Nazmin-Gilki
Comment options

@TOoSmOotH
Comment options

Answer selected by TOoSmOotH
@utkarshborawake
Comment options

@TOoSmOotH
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
4 participants