Signature Revision Information
Status: Beta
Brought to you by:
andrewbaker
I've produced a patch for Barnyard 0.2.0 that fixes a
couple bugs with the ACID DB and Sguil output plugins.
With the unpatched version of Barnyard, neither the
ACID DB or Sguil plugins properly log the signature
revision information. The reason is that the plugins
reference the sid-msg.map for signature details which
does not include revision information. So this patch
takes the unified log data and populates the Sid
structures rev.
barnyard-0.2.0-rev.patch