[Bro] scan.bro and missing log entries

Tyler T. Schoenke Tyler.Schoenke at colorado.edu
Thu Dec 2 08:27:19 PST 2010


On 12/02/2010 09:13 AM, Vern Paxson wrote:
> In general with these sorts of problems, it helps hugely if you can supply
> a trace that reproduces the problem, and also summarize the command line /
> analysis you're using.
>   
Any suggestions on how to grab a trace of these events?  They are fairly
random and infrequent.   I've been thinking about running TimeMachine,
but haven't had time to play with it.

Tyler



More information about the Bro mailing list