Issues
- 1
aushape: error while loading shared libraries: libaushape.so.0: cannot open shared object file: No such file or directory
#70 opened by gatimeher - 0
undeclared symbols on make
#71 opened by hueyvle - 4
Error normalizing NETFILTER_CFG
#69 opened by spbnick - 0
Implement integration tests
#68 opened by spbnick - 0
Support building without audit normalization API
#67 opened by spbnick - 0
Docker VIRT_CONTROL vm field garbage
#66 opened by spbnick - 25
Remote audit logs
#65 opened by Keysuke - 0
Handle repeated NETFILTER_CFG records
#62 opened by spbnick - 0
Some execve events are considered invalid
#63 opened by spbnick - 1
- 1
Implement support for output format, which can easily be forwarded to ElasticSearch
#61 opened by spbnick - 0
- 0
Implement Elasticsearch mapping generation
#58 opened by spbnick - 0
Make parsed data output optional
#57 opened by spbnick - 0
Implement outputting normalized audit event data
#56 opened by spbnick - 0
- 0
Install schemas and Elasticsearch mapping
#52 opened by spbnick - 0
Implement Elasticsearch mapping
#33 opened by spbnick - 2
Consider having field value sub-fields
#51 opened by spbnick - 0
- 0
Scan the code for TODO and FIXME
#49 opened by spbnick - 1
Consider improving formatting code structure
#24 opened by spbnick - 0
Ignore EOE events
#46 opened by spbnick - 0
Implement build integration test
#48 opened by spbnick - 0
Limit event size
#29 opened by spbnick - 0
Implement reporting conversion errors in-band
#34 opened by spbnick - 0
Refactor event formatting and trimming
#47 opened by spbnick - 1
- 0
Output raw representation as array of lines
#38 opened by spbnick - 0
Move raw record output to the event level
#45 opened by spbnick - 2
Consider not passing "first" argument everywhere
#39 opened by spbnick - 0
Consider standardizing on structure object creation arguments instead of va_list ones
#44 opened by spbnick - 0
- 1
Reconsider what part of the collector stack should be checking for record type uniqueness
#41 opened by spbnick - 3
Handle repeated record types
#32 opened by spbnick - 0
Implement communicating path item number from SYSCALL record to PATH record collector
#42 opened by spbnick - 0
- 0
Note destruction functions accept NULL or valid
#36 opened by spbnick - 0
Note validation functions accept NULL
#35 opened by spbnick - 0
Filter out "node" field from records
#31 opened by spbnick - 0
- 0
- 0
- 1
- 1
- 0
- 0
- 0
Find an output which can handle large documents
#27 opened by spbnick - 1
Live logging to ElasticSearch
#28 opened by spbnick - 0