Skip to content
This repository has been archived by the owner on Dec 27, 2023. It is now read-only.

[bug] eq operator =~ errors in Sentinel #4

Open
0xFustang opened this issue Dec 6, 2023 · 0 comments
Open

[bug] eq operator =~ errors in Sentinel #4

0xFustang opened this issue Dec 6, 2023 · 0 comments

Comments

@0xFustang
Copy link

Description

Hi! When converting windows/process_creation and applying the azure_windows pipeline, the expression EventID =~ 4688 triggers the following error in Sentinel: The operator '=~' is not defined for the operand types int and long.

Is this error normal? If not, changing the eq_token would probably resolve the issue.

@0xFustang 0xFustang changed the title [bug] equaltild operator [bug] eq operator =~ errors in Sentinel Dec 6, 2023
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant