]> git.ipfire.org Git - thirdparty/suricata.git/commitdiff
file extract: add app_proto to logging 1556/head
authorVictor Julien <victor@inliniac.net>
Wed, 17 Jun 2015 10:34:58 +0000 (12:34 +0200)
committerVictor Julien <victor@inliniac.net>
Wed, 17 Jun 2015 10:34:58 +0000 (12:34 +0200)
src/log-filestore.c
src/output-json-file.c

index 3caee3b7ff45fd6020aebac490165b92472d6812..8686a0a49f0a9b07f1dfad38f95351509673dbfd 100644 (file)
@@ -207,6 +207,9 @@ static void LogFilestoreLogCreateMetaFile(const Packet *p, const File *ff, char
             fprintf(fp, "DST PORT:          %" PRIu16 "\n", dp);
         }
 
+        fprintf(fp, "APP PROTO:         %s\n",
+                AppProtoToString(p->flow->alproto));
+
         /* Only applicable to HTTP traffic */
         if (p->flow->alproto == ALPROTO_HTTP) {
             fprintf(fp, "HTTP URI:          ");
index 22b9f98cadc61ceadb8ff752a1370b86cc81a788..5464088f1650be32a800153adee9c271dff7e169 100644 (file)
@@ -187,6 +187,7 @@ static void FileWriteJsonRecord(JsonFileLogThread *aft, const Packet *p, const F
         return;
     }
 
+    json_object_set_new(hjs, "app_proto", json_string(AppProtoToString(p->flow->alproto)));
     switch (p->flow->alproto) {
         case ALPROTO_HTTP:
             json_object_set_new(hjs, "url", LogFileMetaGetUri(p, ff));