Update squid_parser.txt
This commit is contained in:
Родитель
25f5d15fd8
Коммит
42dafb5779
|
@ -6,6 +6,7 @@
|
|||
// 1. This parser works against the above mentioned squid version, it may need updates if squid is updated with new events or schema changes.
|
||||
// 2. This parser presumes that squid access logs are being logged to system syslog rather than being collected as a custom log source.
|
||||
// 3. This parser does not parse every field in the squid access logs but instead parsers those fields most applicable to security analysis
|
||||
// 4. This query parser the default squid log format is being used.
|
||||
//
|
||||
// Usage Instruction :
|
||||
// Paste below query in log analytics, click on Save button and select as Function from drop down by specifying function name and alias (e.g. squid_parser).
|
||||
|
|
Загрузка…
Ссылка в новой задаче