We've reorganized our navigation structure to align directly with your operational workflows. See the Google SecOps release notes for more information.
Stay organized with collections
Save and categorize content based on your preferences.
Change log for SNORT_IDS
Date
Changes
2024-12-04
Enhancement-
- Added Grok patterns to handle SYSLOG format logs.
- If the value of "net_proto" is "Tcp", then set the value of "network.ip_protocol" to "TCP".
2024-11-21
Enhancement-
- Added a Grok pattern to handle SYSLOG format logs.
2022-09-22
Enhancement-
- Added on_error condition for the field 'agent.hostname' to parse the unparsed logs.
2022-07-05
Enhancement-
- Added a Grok pattern to handle syslog format logs.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2026-06-29 UTC."],[],[]]