[Bro-Dev] Bro IDS request

Dave Florek dave.a.florek at gmail.com
Fri Aug 12 11:03:48 PDT 2016


Because I lose so much processing power when manually converting Bro output
logs from Epoch to EST using bro-cut, can I have a feature that
automatically outputs the Bro logs to EST automatically instead of Epoch
while Bro is timestamping the logs as it sees the traffic?

I'm not sure if using the Epoch format makes Bro much faster while it's
processing, but I would like a more integrated solution aside from using
the bro-cut utility.

Thank you for your time,
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.icsi.berkeley.edu/pipermail/bro-dev/attachments/20160812/3b5183b6/attachment.html 

More information about the bro-dev mailing list