Feature #335
Filtering events for relaying
Start date:
Due date:
% Done:
0%
Resolution:
invalid
Description
Hi,
I'm trying to filter events for relaying. For instance I want to relay only a set of events defined by me, e.g., if they match a certain pattern.
Right now, prelude-manager is forwarding all events that it receives. Is there anyway to turn of relaying for all events and forward only the ones I want?
Keep on good working
Best regards and thanks in advance,
Rui
History
#1 Updated by Yoann VANDOORSELAERE over 15 years ago
- Status changed from New to Closed
- Resolution set to invalid
Hi,
Prelude-Manager provides filtering features in the through the idmef-criteria, and the thresholding plugins. More information concerning this topic is available in the [[PreludeManager]] documentation. Additionally, please use the MailingLists for asking question.
Regards,
#2 Updated by Yoann VANDOORSELAERE over 15 years ago
- Project changed from PRELUDE SIEM to Prelude Manager
- Category deleted (
3) - Target version deleted (
85)
#3 Updated by Yoann VANDOORSELAERE over 15 years ago
- Target version set to 0.9.15