-
Notifications
You must be signed in to change notification settings - Fork 14
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Filterx parse leef 2.0 #343
base: main
Are you sure you want to change the base?
Commits on Oct 16, 2024
-
csv-scanner: add take-rest method to access the remaining part of csv…
… data without using expected columns mode Signed-off-by: shifter <shifter@axoflow.com>
Configuration menu - View commit details
-
Copy full SHA for ede2dd5 - Browse repository at this point
Copy the full SHA ede2dd5View commit details -
modules/cef/filterx: Enhance event-parser common module with context …
…for improved thread safety. This was required to accommodate the dynamic parsing of the optional delimiter field in LEEF 2.0. Additionally, introduce optional arguments named `field_separator` and `value_separator` in the filterx function to enforce specific separators. Signed-off-by: shifter <shifter@axoflow.com>
Configuration menu - View commit details
-
Copy full SHA for 1f98d7d - Browse repository at this point
Copy the full SHA 1f98d7dView commit details -
modules/cef/filterx: Updated the usage message for the
parse_cef
fi……lterx function. Signed-off-by: shifter <shifter@axoflow.com>
Configuration menu - View commit details
-
Copy full SHA for e8acda5 - Browse repository at this point
Copy the full SHA e8acda5View commit details -
modules/cef/filterx: The
parse_leef
filterx function now supports L……EEF 2.0 version. Changes include: - Updated usage message - Enhanced version parsing - Added optional 'delimiter' field to parse and configure the LEEF extension's pair separator based on the specified delimiter value. Signed-off-by: shifter <shifter@axoflow.com>
Configuration menu - View commit details
-
Copy full SHA for 4b97758 - Browse repository at this point
Copy the full SHA 4b97758View commit details -
modules/cef/filterx: Refactor unit test helpers
- Moved to a separate unit to improve organization due to their size - Implemented `va_args` functions for more flexible construction of filterx function arguments - Generalized helper functions to reduce code duplication in CEF/LEEF tests Signed-off-by: shifter <shifter@axoflow.com>
Configuration menu - View commit details
-
Copy full SHA for e3d338e - Browse repository at this point
Copy the full SHA e3d338eView commit details -
modules/cef/filterx: Rework CEF unit tests
- Utilize the updated test helpers module - Include additional tests for enforcing pair-separator and value-separator functionality Signed-off-by: shifter <shifter@axoflow.com>
Configuration menu - View commit details
-
Copy full SHA for 53e260c - Browse repository at this point
Copy the full SHA 53e260cView commit details -
modules/cef/filterx: Add LEEF unit tests
- Utilize the updated test helpers module - Include additional tests for enforcing pair-separator and value-separator functionality - Add extra tests for parsing and utilizing the optional `delimiter` field in LEEF 2.0 Signed-off-by: shifter <shifter@axoflow.com>
Configuration menu - View commit details
-
Copy full SHA for 79f13cb - Browse repository at this point
Copy the full SHA 79f13cbView commit details