Skip to content
This repository has been archived by the owner on Apr 19, 2021. It is now read-only.

added 5140 parser #25

Merged
merged 1 commit into from
Aug 24, 2017
Merged

Conversation

theflakes
Copy link
Contributor

Noticed that event ID 5140s exhibit odd behavior when reporting source IP by including it in the log's source port field on file access. Therefore added a parser to handle this.

Noticed that event ID 5140s exhibit odd behavior when reporting source IP by including it in the log's source port field on file access.  Therefore added a parser to handle this.
@dougburks
Copy link
Contributor

Thanks @theflakes ! I'll take a look after we get the next ISO image out the door.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants