Suricata IDS default behaviour and UX?

Started by Supermule, August 09, 2015, 09:45:58 AM

Previous topic - Next topic
http://youtu.be/WdgDgUszp88

Hi Franco!

Just did a video.

1: Very slow GUI.
2: Select all button only works for the first 20 in the list.
3: You cant select classtype unless you have0 selected "all".
4: You can select classtype for less than "all" after you have had the "all" selected.
5: It defaults to "7" and this cannot be changed or it doesnt remember what you have chosen next time.
6: Even if "all" is selected the "select all" button doesnt apply.
7: Bigger list options is needed like "50" or "100", maybe "500" in this case with 19040 entries.


We probably should change the search behaviour a bit, when you type it will automatically do a search on the part you just typed.
But all the data needs to come from the log, which in its turn needs to be parsed from json content line by line...
This probably is causing the slow search on larger logs.

Ad pushed fixes, will be in 15.7.9 I think. :)

 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8) 8)