Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

distinguish DNS query and answer in BLF alerting #40

Merged
merged 2 commits into from
Mar 19, 2019

Conversation

satta
Copy link
Member

@satta satta commented Mar 19, 2019

This PR introduces support for handling DNS query and answer types separately -- that is, different alert wordings will be emitted for Bloom filter entries matching on the respective DNS events. This makes it easier to properly map source and destination directions when processing these alerts downstream.
Closes #39.

@satta satta requested a review from rhaist March 19, 2019 14:42
processing/bloom_handler.go Outdated Show resolved Hide resolved
@rhaist rhaist merged commit 1aca672 into DCSO:master Mar 19, 2019
@satta satta deleted the dns-bloom-directions branch May 3, 2019 12:59
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants