Closed tolunFdancer closed 5 years ago
There are no dpdk specific changes in json event generation. Hence I am not able to help in this.
There are also not enough debug points for me look into. Please take a look into the json event generation and update here it will be helpful for all.
Hi, I fixed this issue.
Run " ./src/suricata --build-info" shows: libjansson support: yes
So basically, suricata was not build with josn support.
When I run "./src/suricata -c suricata.yaml --dpdkintel",it works successfully, but did not result the eve.json, the rest shows normal(fast.log、http.log、stats.log). [root@localhost suricata]# ll total 52 -rw-r--r--. 1 root root 17640 Aug 22 03:17 fast.log -rw-r--r--. 1 root root 2326 Aug 22 03:17 http.log -rw-r--r--. 1 root root 24659 Aug 22 03:28 stats.log
Here it the configure in the suricata.yaml: