-
Notifications
You must be signed in to change notification settings - Fork 9
Open
Milestone
Description
Right now AIP input data is very strict and it makes it hard to work with.
Specifically, it should auto discover the zeek logs in the raw folder such as it would be possible to have data from multiple sensors/honeypots:
data/raw/sensor1/<zeek-logs>
data/raw/sensor2/<zeek-logs>
data/raw/sensorN/<zeek-logs>
Right now the only apparent accepted input is:
data/raw/YYYY-MM-DD/conn.*.gz
Metadata
Metadata
Assignees
Labels
No labels
Type
Projects
Status
🔖 Ready