zeek/scripts/policy
Jan Grashoefer a9ad41cdcc Improved intel notices.
Intel notices are identified by a direction independent 3-tuple
(indicator, originator IP, responder IP). This allows notice
suppression. Additionally service and intel source are added to the
notice mail.
2016-05-29 00:57:29 +02:00
..
frameworks Improved intel notices. 2016-05-29 00:57:29 +02:00
integration Allow logging filters to inherit default path from stream. 2015-03-19 14:49:55 -05:00
misc Merge remote-tracking branch 'origin/topic/seth/stats-improvement' 2016-05-07 11:51:35 -07:00
protocols Fix potential race condition when logging VLAN info to conn.log 2015-11-05 12:14:05 -06:00
tuning Move DataSeries and ElasticSearch into plugins. 2014-08-08 18:32:21 -07:00