From b649b538e9c36246ff576b88b3c9a44eaaa4a5c5 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?V=C3=A1clav=20Barto=C5=A1?= <bartos@cesnet.cz> Date: Thu, 1 Nov 2018 14:59:56 +0100 Subject: [PATCH] Flowmon ADS connector: one more fix --- flowmon-ads/warden3_flowmon_ads_filer.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/flowmon-ads/warden3_flowmon_ads_filer.py b/flowmon-ads/warden3_flowmon_ads_filer.py index 6b518a4..d82d697 100755 --- a/flowmon-ads/warden3_flowmon_ads_filer.py +++ b/flowmon-ads/warden3_flowmon_ads_filer.py @@ -128,7 +128,7 @@ ads_types = { "ANOMALY": ["Anomaly.Behaviour"], "BLACKLIST": ["Other"], # FIXME - will need to be set based on other data? "BPATTERNS": ["Attempt.Exploit"], # FIXME - will need to be set based on other data? - "DNSANOMALY": ["information.UnauthorizedAccess"], + "DNSANOMALY": ["Information.UnauthorizedAccess"], "DNSQUERY": ["Anomaly.Traffic"], "DOS": ["Availability.DoS"], "GEODIST": ["Anomaly.Behaviour"], -- GitLab