Looking for documentation? Check out our new learning center!

Database Fields

ic3kymic3kym Posts: 3 UFO Spotter
edited September 2012 in Deployment Architecture
I would like to ask one thing:
I have installed OSSIM version 4.0. I have configured snare on windows in order to send syslog events to OSSIM. OSSIM receives events correctly and stores them into a table called "acid_event".
Now I would like to ask you: what is the meaning of the field "ctx" and how can I read it?
I think that this field (ctx) contains the Raw events. If I'm wrong, in which table can I find the raw events?



Sign In or Register to comment.