Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
import socket
import sys
-SOCKET_PATH = "/var/run/suricata-reporter.socket"
+SOCKET_PATH = "/var/run/suricata/reporter.socket"
log = logging.getLogger("suricata-reporter")
log.setLevel(logging.DEBUG)
# Extensible Event Format (nicknamed EVE) event log in JSON format
- eve-log:
- enabled: no
- filetype: regular #regular|syslog|unix_dgram|unix_stream|redis
- filename: eve.json
+ enabled: yes
+ filetype: unix_dgram #regular|syslog|unix_dgram|unix_stream|redis
+ filename: /var/run/suricata/reporter.socket
# Enable for multi-threaded eve.json output; output files are amended with
# an identifier, e.g., eve.9.json
#threaded: false