-
Notifications
You must be signed in to change notification settings - Fork 362
/
Copy pathtables.go
71 lines (61 loc) · 2.08 KB
/
tables.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
package config
type (
//TableCfg is the container for other table config sections
TableCfg struct {
Log LogTableCfg
DNS DNSTableCfg
Structure StructureTableCfg
Beacon BeaconTableCfg
BeaconSNI BeaconSNITableCfg
BeaconProxy BeaconProxyTableCfg
UserAgent UserAgentTableCfg
Cert CertificateTableCfg
Meta MetaTableCfg
}
//LogTableCfg contains the configuration for logging
LogTableCfg struct {
RitaLogTable string `default:"logs"`
}
//StructureTableCfg contains the names of the base level collections
StructureTableCfg struct {
ConnTable string `default:"conn"`
DNSTable string `default:"dns"`
HostTable string `default:"host"`
HTTPTable string `default:"http"`
OpenConnTable string `default:"openconn"`
SSLTable string `default:"ssl"`
UniqueConnTable string `default:"uconn"`
UniqueConnProxyTable string `default:"uconnProxy"`
SNIConnTable string `default:"SNIconn"`
}
//DNSTableCfg is used to control the dns analysis module
DNSTableCfg struct {
ExplodedDNSTable string `default:"explodedDns"`
HostnamesTable string `default:"hostnames"`
}
//BeaconTableCfg is used to control the beaconing analysis module
BeaconTableCfg struct {
BeaconTable string `default:"beacon"`
}
//BeaconSNITableCfg is used to control the SNI beaconing analysis module
BeaconSNITableCfg struct {
BeaconSNITable string `default:"beaconSNI"`
}
//BeaconProxyTableCfg is used to control the beaconing analysis module
BeaconProxyTableCfg struct {
BeaconProxyTable string `default:"beaconProxy"`
}
//UserAgentTableCfg is used to control the useragent analysis module
UserAgentTableCfg struct {
UserAgentTable string `default:"useragent"`
}
//CertificateTableCfg is used to control the useragent analysis module
CertificateTableCfg struct {
CertificateTable string `default:"cert"`
}
//MetaTableCfg contains the meta db collection names
MetaTableCfg struct {
FilesTable string `default:"files"`
DatabasesTable string `default:"databases"`
}
)