Huntress
Create
Log in
Sign up
Roadmap
Feedback
Managed SIEM
78
Changelog
Category
Uncategorized
Voters
S
Samual Carman
D
David Long
Powered by Canny
2
Integer formatting in syslog standard fields
in progress
D
David Long
Currently all fields ingested as strings. Standard syslog fields (ie pri and facility) should be formatted as integers to allow for queries like
where sonicwall.pri < 5
to search for syslogs with a severity of warning and above.
June 12, 2024
Chris Bisnett
marked this post as
in progress
·
June 12, 2024
·
Reply
Chris Bisnett
Yep, you are correct, all of the fields are currently translated into strings. This is something we're working on right now.
·
June 12, 2024
·
Reply
Powered by Canny