[Bro] Creating anomaly detection IDPS
fatema.bannatwala at gmail.com
Wed May 24 13:21:37 PDT 2017
There are various ways one can use to detect anomaly using Bro based on the
Use of Intel FW and Scan scripts with Bro gives a start to detect different
types of scanning and other suspicious activity going on in the network.
Not sure what's exactly your use-case is regarding NSL-KDD training sets
Are you trying to use Bro generated network data as the test set for your
classifiers/learning algos?, or trying to feed Bro with the NSL-KDD
training sets? I don't think machine learning is currently being supported
Or I might have mis-understood the question :)
-------------- next part --------------
An HTML attachment was scrubbed...
More information about the Bro