[Bro-Dev] Logging TCP server banners

Pierre LALET pierre at droids-corp.org
Tue Feb 13 01:47:46 PST 2018


On Mon, Feb 12, 2018 at 05:18:05PM -0500, Seth Hall wrote:
> This fits with a feature that I've been talking to several people
> about for quite a while which would make a bit of the beginning of
> each direction of a connection available in script-land.

I think that would be great!

> That would help with your problem a bit, but it sounds like since
> there is a particular packet that you want, you may want to write
> your own analyzer that gets the exact data that you are looking for
> because you should be able to do packet level stuff easily there.

I wanted to avoid that, but actually I think you're right.

Thanks for your answer,



More information about the bro-dev mailing list