[Bro] Segmentation fault at Off-line test

rmkml rmkml at wanadoo.fr
Sat Dec 11 05:48:12 PST 2004


Hi,

Im downloaded targa2 :

http://mvb.saic.com/freeware/vmslt99b/sec/targa2.c

compiled on linux 2.6.9

running on linux (./targa2 192.168.1.1 192.168.1.1 -t 0),

network dump to targa2.tcpdump (-ns0 -i eth0),

  (join file)

run bro09a7 on fbsd410R

with "my own.bro"

and no pb.

what os use ?
what bro version use ?

Regards

Rmkml at Wanadoo.fr



On Fri, 10 Dec 2004, shonx001 wrote:

> Date: Fri, 10 Dec 2004 14:37:36 CST
> From: shonx001 <shonx001 at umn.edu>
> To: bro at bro-ids.org
> Subject: [Bro] Segmentation fault at Off-line test
> 
>  Hi all,
>
> When I tried to test Bro in off-line with TCP dump file, I met
> segmentation falut error.
>
> The tcpdump was captured using "Targa2.c" with all supported attacks.
>
> Also, I used the "my own.bro" in accordance with former mailing list
> written by Vern about off-line test.
>
> What I used command is as follows:
>
> . /bro.cfg
> ./bro -r "dumpfile" "my own.bro"
>
>
> refer to "my own.bro"
>
>         @load site
> 	@load mt
> 	@load tftp
> 	@load dns
> 	@load flag-irc
> 	@load smtp-relay
> 	@load software
> 	@load ssh
> 	@load worm
> 	@load backdoor.bro
> 	@load blaster.bro
> 	@load flag-warez.bro
> 	@load gnutella.bro
> 	@load http-abstract.bro
> 	@load http-body.bro
> 	@load http-reply.bro
> 	@load icmp.bro
> 	@load ssl-worm.bro
> 	@load stepping.bro
> 	@load synflood.bro
>
>
> Thanks
>
> Taeshik
>
>
> _______________________________________________
> Bro mailing list
> bro at bro-ids.org
> http://mailman.ICSI.Berkeley.EDU/mailman/listinfo/bro
>
>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: targa2.tcpdump.bz2
Type: application/octet-stream
Size: 19967 bytes
Desc: 
Url : http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20041211/e76bdbb0/attachment.obj 


More information about the Bro mailing list