[Bro-Dev] #870: Merge Modbus analyzer

Bro Tracker bro at tracker.bro-ids.org
Wed Aug 29 18:03:35 PDT 2012


#870: Merge Modbus analyzer
----------------------------+------------------------
  Reporter:  robin          |      Owner:
      Type:  Merge Request  |     Status:  new
  Priority:  Normal         |  Milestone:  Bro2.2
 Component:  Bro            |    Version:  git/master
Resolution:                 |   Keywords:
----------------------------+------------------------

Comment (by robin):

 In [cbb31cedc374fcf741344f021ff8349d4ec11238/bro]:
 {{{
 #!CommitTicketReference repository="bro"
 revision="cbb31cedc374fcf741344f021ff8349d4ec11238"
 Merge remote-tracking branch 'origin/topic/dina/modbus' into topic/robin
 /modbus-merge

 * origin/topic/dina/modbus:
   put some make-up on Modbus analyser
   Modbus analyser, added support: FC=20,21
   Modbus analyzer,added support: FC=1,2,15,24
   Modbus analyzer, current support: FC=3,4,5,6,7,16,22,23

 I cleaned up the code a bit, mainly layout style.

 I did not include the *.bro scripts for now, but a test script
 ../testing/btest/scripts/base/protocols/modbus/events.bro that prints
 out the value for each event.

 Merged the Modbus traces from the ics repository into a single trace
 as input for the test. They currently trigger 20 of the 34 events.

 Addresses #870.
 }}}

-- 
Ticket URL: <http://tracker.bro-ids.org/bro/ticket/870#comment:2>
Bro Tracker <http://tracker.bro-ids.org/bro>
Bro Issue Tracker



More information about the bro-dev mailing list