Skip to content

Read data from multiple sensors #62

@verovaleros

Description

@verovaleros

Right now AIP input data is very strict and it makes it hard to work with.
Specifically, it should auto discover the zeek logs in the raw folder such as it would be possible to have data from multiple sensors/honeypots:

data/raw/sensor1/<zeek-logs>
data/raw/sensor2/<zeek-logs>
data/raw/sensorN/<zeek-logs>

Right now the only apparent accepted input is:

data/raw/YYYY-MM-DD/conn.*.gz

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    Status

    🔖 Ready

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions