Suricata data source type specifications

When you configure the Suricata device, understanding the specifications for the Suricata data source type can help ensure a successful integration. For example, knowing what the supported version of Suricata is before you begin can help reduce frustration during the configuration process.

The following table describes the specifications for the Suricata data source type.

Table 1. Suricata data source type specifications
Specification Value
Manufacturer Open Information Security Foundation
Data source type Suricata
Supported version 6.0.3 and earlier
Connector type

Syslog

TLS Syslog

Event format JSON
Recorded event types Alerts
Automatically discovered? No
Includes identity? No
Includes custom properties? No
More information https://suricata.io/