Closed henridf closed 4 years ago
Point to Brim's Suricata fork which has support for "-r -", and use that rather than "-r /dev/stdin" in the macOS and linux runners.
This change is groundwork for Windows support where "-r /dev/stdin" does not work.
I've verified the new package works (on macOS); after this merges, I'll open a zq PR to bump the suricata version to brim5.
Point to Brim's Suricata fork which has support for "-r -", and use that rather than "-r /dev/stdin" in the macOS and linux runners.
This change is groundwork for Windows support where "-r /dev/stdin" does not work.