Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Suricata] Missing ECS Field Mappings #7274

Closed
MakoWish opened this issue Aug 4, 2023 · 1 comment · Fixed by #7657
Closed

[Suricata] Missing ECS Field Mappings #7274

MakoWish opened this issue Aug 4, 2023 · 1 comment · Fixed by #7657
Labels

Comments

@MakoWish
Copy link
Contributor

MakoWish commented Aug 4, 2023

Describe the Issue

The Suricata integration does not currently have mappings for several destination.* and source.* fields and is causing conflicts in the logs-* Data View.

Screenshots

suricata_conflict

@elasticmachine
Copy link

Pinging @elastic/security-external-integrations (Team:Security-External Integrations)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment