[Bro-Dev] #870: Merge Modbus analyzer

Bro Tracker bro at tracker.bro-ids.org
Wed Aug 29 18:03:35 PDT 2012

#870: Merge Modbus analyzer
  Reporter:  robin          |      Owner:
      Type:  Merge Request  |     Status:  new
  Priority:  Normal         |  Milestone:  Bro2.2
 Component:  Bro            |    Version:  git/master
Resolution:                 |   Keywords:

Comment (by robin):

 In [cbb31cedc374fcf741344f021ff8349d4ec11238/bro]:
 #!CommitTicketReference repository="bro"
 Merge remote-tracking branch 'origin/topic/dina/modbus' into topic/robin

 * origin/topic/dina/modbus:
   put some make-up on Modbus analyser
   Modbus analyser, added support: FC=20,21
   Modbus analyzer,added support: FC=1,2,15,24
   Modbus analyzer, current support: FC=3,4,5,6,7,16,22,23

 I cleaned up the code a bit, mainly layout style.

 I did not include the *.bro scripts for now, but a test script
 ../testing/btest/scripts/base/protocols/modbus/events.bro that prints
 out the value for each event.

 Merged the Modbus traces from the ics repository into a single trace
 as input for the test. They currently trigger 20 of the 34 events.

 Addresses #870.

Ticket URL: <http://tracker.bro-ids.org/bro/ticket/870#comment:2>
Bro Tracker <http://tracker.bro-ids.org/bro>
Bro Issue Tracker

More information about the bro-dev mailing list