[Bro] Extraction of IP identification field from tcpdump file

Rishi Sahay basusahay at gmail.com
Wed Feb 22 05:01:41 PST 2012


   Hello,

I want to extract the IP identification field from tcpdump dataset. I have
> attached the script which I have got. I am new to BRO IDS. Please, tell me
> how to extract the IP identification field from tcpdump file using this
> script. Actually, I was extracting the 41 features from the tcpdump
> dataset. Thanks in advance.
>
> --
> Best regards
>   Rishikesh Sahay
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20120222/558ec3b2/attachment.html 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: extractfeature.bro
Type: application/octet-stream
Size: 75835 bytes
Desc: not available
Url : http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20120222/558ec3b2/attachment.obj 


More information about the Bro mailing list