From 0010f996626ccaf0f878f56a42ac992d4fa50c52 Mon Sep 17 00:00:00 2001 From: Andrea De Pasquale Date: Wed, 25 Nov 2020 17:07:49 +0100 Subject: [PATCH] Suricata: disable eve.stats since it's unused Prevent the error below by disabling stats globally and in eve-log: - [ERRCODE: SC_ERR_STATS_LOG_GENERIC(278)] - eve.stats: stats are disabled globally: set stats.enabled to true. --- docker/suricata/dist/suricata.yaml | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/docker/suricata/dist/suricata.yaml b/docker/suricata/dist/suricata.yaml index 7055a5b9..a133199b 100644 --- a/docker/suricata/dist/suricata.yaml +++ b/docker/suricata/dist/suricata.yaml @@ -59,7 +59,7 @@ default-log-dir: /var/log/suricata/ # global stats configuration stats: - enabled: yes + enabled: no # The interval field (in seconds) controls at what interval # the loggers are invoked. interval: 8 @@ -275,10 +275,10 @@ outputs: # to an IP address is logged. extended: no - ssh - - stats: - totals: yes # stats for all threads merged together - threads: no # per thread stats - deltas: no # include delta values + #- stats: + #totals: yes # stats for all threads merged together + #threads: no # per thread stats + #deltas: no # include delta values # bi-directional flows #- flow # uni-directional flows