Bot releases are hidden (Show)
Published by philrz over 4 years ago
Visit the Brim Download page to find the package for your OS platform.
cut
processor documentation (#924)Published by philrz over 4 years ago
Visit the Brim Download page to find the package for your OS platform.
Time.trunc()
(#842)every X
to use a computed groupby key (#893)cut
processor to emit any matching fields (#899)Published by philrz over 4 years ago
Visit the Brim Download page to find the package for your OS platform.
-i parquet
, no auto-detection) (#736, #754, #774, #780, #782, #820, #813, #830, #825, #834)\r\n
line endings generated by MinGW (Windows) Zeek (#775)-
(#777)zapi
, a simple CLI for interacting with zqd
servers (#802, #809, #812)Published by philrz over 4 years ago
Visit the Brim Download page to find the package for your OS platform.
put
processor (#697)Published by philrz over 4 years ago
Visit the Brim Download page to find the package for your OS platform.
sort
limit) (#527)Published by philrz over 4 years ago
Visit the Brim Download page to find the package for your OS platform.
=~
and !~
operators in filters for globs, regexps, and matching addresses against subnets (#604, #620)cut
now has a -c
option to show all fields not in the provided list (#639, #655)-f zng
(binary ZNG) the default zq
output format, and introduce -t
as shorthand for -f tzng
(#654)Published by philrz over 4 years ago
Published by philrz over 4 years ago
-e
flag to allow for continued reads during input errors (#577)Published by philrz over 4 years ago
Published by philrz over 4 years ago
put
processor (#477)len()
to only sets/vectors, introduce new functions for string length (#485)Published by alfred-landrum over 4 years ago
put
processor that adds or updates fields using a computedMath.min
, Math.max
, and others.Published by alfred-landrum over 4 years ago
Published by alfred-landrum over 4 years ago
Address an issue ingest packet captures in the legacy pcap format.
Published by alfred-landrum over 4 years ago
Published by alfred-landrum over 4 years ago
Published by alfred-landrum over 4 years ago
Point release to provide updated AST parsing.
Published by alfred-landrum over 4 years ago
Point release to provide an updated zql AST.
Published by philrz over 4 years ago
Published by alfred-landrum over 4 years ago
Published by alfred-landrum over 4 years ago
make test-heavy
.