[Bro] Snort Rules

Parker, Jonathan E. jep at g-c-i.net
Thu Apr 4 08:25:20 PDT 2013


I’m a Bro newbie and I’ve been tasked to look at using Bro to perform analysis on Pcap files.  We’d like to utilize some existing Snort rules in this analysis.  A number of the Snort rules contain “offset” and “depth” parameters.  I’d appreciate some advice on how to accomplish doing these Snort alerts in Bro.

Thanks – Jon
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20130404/fa05c395/attachment.html 


More information about the Bro mailing list