eventd-rfc
eventd-rfc copied to clipboard
A RFC of a syslog replacement
I was going to submit this as a PR to the readme, but I wasn't sure how to word the change, so I submit this for discussion. From the readme:...
This is going to come off more challenging than I intend, but let me argue that there are network activities (logging among them) that you want to let fail. Let...
With respect to protocols/formats, there are two efforts I know of (but there are probably more): - MITRE CEE (https://cee.mitre.org/language/1.0-beta1/) - ArcSight CEF Both of these projects (CEE and CEF),...
Are you thinking that much of the structured format from syslog would be configureably mapped to `Event.Attributes` or some sub `Object` with sensible defaults? ``` { "syslog" : { "facility":...