Giter Site home page Giter Site logo

nw-logparsers's Introduction

NetWitness Suite Log Parsers Repository

A repository to share and contribute event source log parsers for the NetWitness Log Decoder.

A log parser defines how a NetWitness Log Decoder identifies, parses, and extracts information from the events of a specific event source. These parser definitions are stored as an XML file, called an event source XML file, which is deployed on the NetWitness platform.

You can create a new event source parser for an event source that is not currently supported by NetWitness and share it with the NetWitness community. You can also edit an existing event source parser to add or edit definitions for events, or to correct errors. You may need to edit an event source parser in one of the following situations:

  • You upgrade to a new version of an event source that contains new, updated, or deprecated event messages.
  • You want to include additional definitions for existing events.
  • You want to update the definition for an existing event in an event source parser.
  • You want to correct errors in an event source parser.

GitHub members can contribute to the repository by adding/editing an event source parser by raising a Pull Request and it'll be reviewed by our engineers for final check.

Please read LogParser101 document to understand the guidelines on log parser development and best practices.

Please go through below guide to understand the GitHub workflow to be followed: https://guides.github.com/introduction/flow/

More information related to GitHub can be found here: https://services.github.com/on-demand/intro-to-github/

Note: Any new event source parser which is not yet supported by RSA should be added under community directory, list of all supported event sources are available here: https://community.rsa.com/community/products/netwitness/parser-network/event-sources and all supported latest log parsers are available under devices directory.

nw-logparsers's People

Contributors

arotem avatar dinocherian avatar jaw3 avatar jayshah-rsa avatar manish-rsa avatar manish1976 avatar rathnr1 avatar shrutiranjit avatar

Watchers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.