Skip to content

Making a zeek log file to input to RITA #802

@fearanp

Description

@fearanp

Hi,

Not a issue as such more a technical question. Just wondering if there are mandatory headings that are required to get value from the tool with your own custom formatted log file.

I have dns/sni logs that I am translating into a zeek log format and have mapped the headings . I don't have all the headings with values, so the question is will that have an impact on the output of the RITA tool ?

Is there a list of headings in the zeek log that are mandatory to use the tool?

Thanks in advance

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions