-1

谁能帮我创建一个添加[ SURICATA ]到此日志文件中的脚本?

alert http $EXTERNAL_NET any -> $HOME_NET any (msg:"ET SCAN SQL Injection Attempt (Agent uil2pn)"; flow:to_server,established; content:"$
4

1 回答 1

0

尝试这个:

sed -i 's/.*:"/&[ SURICATA ]/' yourfile.log
于 2017-02-10T17:30:55.857 回答