Project

General

Profile

Feature #6126

Add information about last filter match to reporter

Added by Jan Mach 4 months ago. Updated about 4 hours ago.

Status:
New
Priority:
Normal
Assignee:
Category:
Development - Core
Target version:
Start date:
12/10/2019
Due date:
% Done:

0%

Estimated time:
To be discussed:
Yes

Description

It would be very useful to have information about last filter match timestamp. This information could be used to prune the list of all defined filters and remove those that are not matching anymore and just delay the processing.

Associated revisions

Revision 1b1f06e9 (diff)
Added by Jan Žerdík about 9 hours ago

Add information about last filter match to reporter.

(Redmine issue: #6126)

History

#1 Updated by Pavel Kácha 4 months ago

Maybe we could start (or complement that) with more verbose logging? Now it seems we log just number of events:

Filters let 1 events through, 0 blocked.

If we logged names of matching rules, we could do even more interesting awk-jobs (like “how many events from this particular detector gets dropped”, or “how many people drop something concerning this detector”)

#2 Updated by Jan Mach about 2 months ago

  • To be discussed changed from No to Yes

#3 Updated by Jan Mach about 2 months ago

  • Assignee changed from Jan Mach to Jan Žerdík

#4 Updated by Pavel Kácha about 2 months ago

After discussion - migration to add column to Filters table; when updating counters, update also actual timestamp.

#5 Updated by Pavel Kácha about 2 months ago

  • To be discussed deleted (Yes)

#6 Updated by Jan Žerdík about 4 hours ago

  • To be discussed set to Yes

Also available in: Atom PDF