sysflow-telemetry / sysflow

SysFlow documentation and issues tracker
Other
45 stars 10 forks source link

Policy actions - implementation missing #68

Closed san-zrl closed 2 years ago

san-zrl commented 3 years ago

The processor policy language currently defines three different action values: alert, tag and hash. However, the code makes no different between these values: If the condition matches, a policies object is added to the event (only an invalid action value disables this enrichment). We need to decide