Ryan Merriman created METRON-1638:
-------------------------------------

             Summary: Retrieve Pcap results in pdml format
                 Key: METRON-1638
                 URL: https://issues.apache.org/jira/browse/METRON-1638
             Project: Metron
          Issue Type: Sub-task
            Reporter: Ryan Merriman


There should be a REST endpoint that allows a user to retrieve pcap page 
results in pdml format.  Assuming tshark is installed, there should be a "GET 
/api/v1/pcap/pdml/<jobId>/<pageNumber>" endpoint that will return pcap results 
for the given page in pdml format ([https://wiki.wireshark.org/PDML]), 
converted to json for easier consumption by a UI. This endpoint will call out 
to the tskark utility for the raw to pdml conversion.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)

Reply via email to