exclude detect-parse errors

This commit is contained in:
Jason Ertel
2024-05-15 19:10:50 -04:00
parent d120326cb9
commit 4771810361
2 changed files with 2 additions and 1 deletions

View File

@@ -202,6 +202,7 @@ if [[ $EXCLUDE_KNOWN_ERRORS == 'Y' ]]; then
EXCLUDED_ERRORS="$EXCLUDED_ERRORS|parsing_exception" # Elastalert EQL parsing issue. Temp. EXCLUDED_ERRORS="$EXCLUDED_ERRORS|parsing_exception" # Elastalert EQL parsing issue. Temp.
EXCLUDED_ERRORS="$EXCLUDED_ERRORS|context deadline exceeded" EXCLUDED_ERRORS="$EXCLUDED_ERRORS|context deadline exceeded"
EXCLUDED_ERRORS="$EXCLUDED_ERRORS|Error running query:" # Specific issues with detection rules EXCLUDED_ERRORS="$EXCLUDED_ERRORS|Error running query:" # Specific issues with detection rules
EXCLUDED_ERRORS="$EXCLUDED_ERRORS|detect-parse" # Suricata encountering a malformed rule
fi fi
RESULT=0 RESULT=0

View File

@@ -12,7 +12,7 @@ suricata:
title: SIDS title: SIDS
helpLink: suricata.html helpLink: suricata.html
readonlyUi: True readonlyUi: True
advanced: true advanced: True
classification: classification:
classification__config: classification__config:
description: Classifications config file. description: Classifications config file.