mirror of
https://github.com/lucaspalomodevelop/core.git
synced 2026-03-18 02:25:05 +00:00
intrusion detection: log drops and alerts causing them
This commit is contained in:
parent
5e970ddf87
commit
573612d48e
@ -117,7 +117,10 @@ outputs:
|
||||
# - files:
|
||||
# force-magic: no # force logging magic on all logged files
|
||||
# force-md5: no # force logging of md5 checksums
|
||||
# #- drop
|
||||
- drop:
|
||||
alerts: yes # log alerts that caused drops
|
||||
flows: start # start or all: 'start' logs only a single drop
|
||||
# per flow direction. All logs each dropped pkt.
|
||||
# - ssh
|
||||
|
||||
# alert output for use with Barnyard2
|
||||
|
||||
Loading…
x
Reference in New Issue
Block a user