Merge pull request #13025 from Security-Onion-Solutions/jertel/suridp

exclude detect-parse errors
This commit is contained in:
Jason Ertel
2024-05-15 19:21:30 -04:00
committed by GitHub
2 changed files with 2 additions and 1 deletions

View File

@@ -202,6 +202,7 @@ if [[ $EXCLUDE_KNOWN_ERRORS == 'Y' ]]; then
EXCLUDED_ERRORS="$EXCLUDED_ERRORS|parsing_exception" # Elastalert EQL parsing issue. Temp.
EXCLUDED_ERRORS="$EXCLUDED_ERRORS|context deadline exceeded"
EXCLUDED_ERRORS="$EXCLUDED_ERRORS|Error running query:" # Specific issues with detection rules
EXCLUDED_ERRORS="$EXCLUDED_ERRORS|detect-parse" # Suricata encountering a malformed rule
fi
RESULT=0

View File

@@ -12,7 +12,7 @@ suricata:
title: SIDS
helpLink: suricata.html
readonlyUi: True
advanced: true
advanced: True
classification:
classification__config:
description: Classifications config file.