Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

allow user to be able to provide custom zeek config #303

Closed
mmguero opened this issue Nov 29, 2023 · 1 comment
Closed

allow user to be able to provide custom zeek config #303

mmguero opened this issue Nov 29, 2023 · 1 comment
Assignees
Labels
enhancement New feature or request zeek Relating to Malcolm's use of Zeek
Milestone

Comments

@mmguero
Copy link
Collaborator

mmguero commented Nov 29, 2023

(See #302 for the corresponding bug for suricata.)

It'd be a neat idea to provide the user the ability to drop custom .zeek files (and maybe .sig files? what else would be included there?) into a directory that gets bind-mounted into the container and then the regular local.zeek file would @load it. This would allow users to customize zeek functionality without having to be invasive with the container.

@mmguero mmguero added enhancement New feature or request zeek Relating to Malcolm's use of Zeek labels Nov 29, 2023
@mmguero mmguero modified the milestones: v23.12.0, v23.11.0 Nov 29, 2023
mmguero added a commit to mmguero-dev/Malcolm that referenced this issue Nov 29, 2023
mmguero added a commit to mmguero-dev/Malcolm that referenced this issue Nov 29, 2023
mmguero added a commit to mmguero-dev/Malcolm that referenced this issue Nov 29, 2023
mmguero added a commit to mmguero-dev/Malcolm that referenced this issue Nov 30, 2023
@mmguero mmguero self-assigned this Nov 30, 2023
@mmguero
Copy link
Collaborator Author

mmguero commented Nov 30, 2023

Complete. Tested on malcolm and hedgehog, closing.

@mmguero mmguero closed this as completed Nov 30, 2023
This was referenced Dec 4, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request zeek Relating to Malcolm's use of Zeek
Projects
Status: Released
Development

No branches or pull requests

1 participant