my suricata no data
RonnieNiu opened this issue · 7 comments
RonnieNiu commented
pevma commented
Is that stand alone scirius or part of SELKS?
RonnieNiu commented
pevma commented
When you are on the Kibana page - if you use Chrome - what are the errors when you press Ctrl+Shift+J
?
RonnieNiu commented
pevma commented
I think this is related to - #182 (comment)
RonnieNiu commented
disable es auth ,then ok, but not eve. Json data发自我的华为手机-------- 原始邮件 --------主题:Re: [StamusNetworks/scirius] my suricata no data (#183)发件人:Peter Manev 收件人:StamusNetworks/scirius 抄送:ybn ,Author I think this is related to - #182
—You are receiving this because you authored the thread.Reply to this email directly, view it on GitHub, or mute the thread.
pevma commented
Aha ok - so if you re using a proxy of some sort - i think you need to explicitly allow those paths - here is an example as it is done in SELKS - https://github.com/StamusNetworks/SELKS/blob/master/staging/config/hooks/live/chroot-inside-Debian-Live.hook.chroot#L125