metron-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Justin Leet (JIRA)" <j...@apache.org>
Subject [jira] [Updated] (METRON-1638) Retrieve Pcap results in pdml format
Date Wed, 05 Sep 2018 15:17:00 GMT

     [ https://issues.apache.org/jira/browse/METRON-1638?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

Justin Leet updated METRON-1638:
--------------------------------
    Fix Version/s: 0.6.0

> Retrieve Pcap results in pdml format
> ------------------------------------
>
>                 Key: METRON-1638
>                 URL: https://issues.apache.org/jira/browse/METRON-1638
>             Project: Metron
>          Issue Type: Sub-task
>            Reporter: Ryan Merriman
>            Assignee: Ryan Merriman
>            Priority: Major
>             Fix For: 0.6.0
>
>
> There should be a REST endpoint that allows a user to retrieve pcap page results in pdml
format.  Assuming tshark is installed, there should be a "GET /api/v1/pcap/pdml/<jobId>/<pageNumber>"
endpoint that will return pcap results for the given page in pdml format ([https://wiki.wireshark.org/PDML]),
converted to json for easier consumption by a UI. This endpoint will call out to the tskark
utility for the raw to pdml conversion.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)

Mime
View raw message