[Bro] Scan UDP

Cristian Daniel Barbaro cbarbaro at cert.unlp.edu.ar
Thu Feb 11 10:53:07 PST 2016

Hi, Community.

i'm testing UDP ports scans with Nmap but Bro doesn't detect this scan

Bro implements this scan type detect?

I'm using hooks (Scan::addr_scan_policy Scan::port_scan_policy) to
generate logs, with UDP the logs remain empty.
However, the UDP connections was stored in conn.log.

Thanks and sorry for my english.

Cristian Daniel Barbaro

More information about the Bro mailing list