"
[JavaScript] 纯文本查看 复制代码{
AnomalyID:11111,
CreationTime:"Mon May 29 07:01:16 2023",
UpdateTime:"Mon May 29 10:20:16 2023",
Type:"Traffic Anomaly",
SubType:"TCP ACK Flood",
DIP1:"117.117.208.187",
DPort1:"443",
DPort2:"80",
SIP1:"39.175.116.198",
SIP2:"123.55.23.18",
SIP3:"143.112.214.371",
SPort1:"981",
SPort2:"58231"
}
我现在利用的是kibana里面自带的grok debugger测试正则 可惜这表达式我是一点都看不懂 研究了两天都没点头绪 恳求大佬们帮忙