[Bro] Off-line analysis

shonx001 shonx001 at umn.edu
Sun Dec 5 17:58:05 PST 2004


Thanks.
Anyway, I will try to follow Vern's advice.
If you get some other brilliant idea, please let me know!

On 5 Dec 2004, john mcnicholas wrote:
> > Anyhow, what I really want to know is to do some ID attack ananlsys
using
> Bro.
> > If you have experienced such things with Bro, please let me know.
> > I get some tcpdump raw file, but it is not easy to handle Bro for
offline
> > test. 
> 
> I'll gladly try to help once I figure out my nagging issues.  Hopefully
that
> will be before Tuesday.
> 
> john
> 
> 





More information about the Bro mailing list