mirror of
https://github.com/zeek/zeek.git
synced 2025-10-02 22:58:20 +00:00

- policy/ renamed to scripts/ - By default BROPATH now contains: - scripts/ - scripts/policy - scripts/site - *Nearly* all tests pass. - All of scripts/base/ is loaded by main.cc - Can be disabled by setting $BRO_NO_BASE_SCRIPTS - Scripts in scripts/base/ don't use relative path loading to ease use of BRO_NO_BASE_SCRIPTS (to copy and paste that script). - The scripts in scripts/base/protocols/ only (or soon will only) do logging and state building. - The scripts in scripts/base/frameworks/ add functionality without causing any additional overhead. - All "detection" activity happens through scripts in scripts/policy/. - Communications framework modified temporarily to need an environment variable to actually enable (ENABLE_COMMUNICATION=1) - This is so the communications framework can be loaded as part of the base without causing trouble when it's not needed. - This will be removed once a resolution to ticket #540 is reached.
41 lines
No EOL
842 B
Text
41 lines
No EOL
842 B
Text
module Syslog;
|
|
|
|
export {
|
|
const facility_codes: table[count] of string = {
|
|
[0] = "KERN",
|
|
[1] = "USER",
|
|
[2] = "MAIL",
|
|
[3] = "DAEMON",
|
|
[4] = "AUTH",
|
|
[5] = "SYSLOG",
|
|
[6] = "LPR",
|
|
[7] = "NEWS",
|
|
[8] = "UUCP",
|
|
[9] = "CRON",
|
|
[10] = "AUTHPRIV",
|
|
[11] = "FTP",
|
|
[12] = "NTP",
|
|
[13] = "AUDIT",
|
|
[14] = "ALERT",
|
|
[15] = "CLOCK",
|
|
[16] = "LOCAL0",
|
|
[17] = "LOCAL1",
|
|
[18] = "LOCAL2",
|
|
[19] = "LOCAL3",
|
|
[20] = "LOCAL4",
|
|
[21] = "LOCAL5",
|
|
[22] = "LOCAL6",
|
|
[23] = "LOCAL7",
|
|
} &default=function(c: count): string { return fmt("?-%d", c); };
|
|
|
|
const severity_codes: table[count] of string = {
|
|
[0] = "EMERG",
|
|
[1] = "ALERT",
|
|
[2] = "CRIT",
|
|
[3] = "ERR",
|
|
[4] = "WARNING",
|
|
[5] = "NOTICE",
|
|
[6] = "INFO",
|
|
[7] = "DEBUG",
|
|
} &default=function(c: count): string { return fmt("?-%d", c); };
|
|
} |