Timestamps in Elastic data #1716
Answered
by
t3chn0m4g3
regulartim
asked this question in
Q&A
-
Hi! :) I am currently working on GreedyBear and have a question regarding timestamps in the Elastic data. It seems to me that every honeypot interaction has an |
Beta Was this translation helpful? Give feedback.
Answered by
t3chn0m4g3
Dec 17, 2024
Replies: 1 comment 3 replies
-
Awesome to hear GreedyBear development continues! T-Pot events are always time based events, so there are the fields |
Beta Was this translation helpful? Give feedback.
3 replies
Answer selected by
regulartim
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Awesome to hear GreedyBear development continues!
T-Pot events are always time based events, so there are the fields
@timestamp
andtimestamp
which should never beNULL
, but contain a UTC derived timestamp.