[Bro] Standard Bro checks on tcpdump files.What that really means?

Luca Renaud renaud.luca at gmail.com
Mon Dec 23 17:58:15 PST 2013


When we do a :       bro -r dumpfile ,on a previously recorded dump file
what are the standard checks Bro really executes? ALL that come defined
within the Bro scripts directory ( export BROPATH=/...........)?
Backdoor.bro,etc.etc.? Or just A PART of it?
                                                   Thanks.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20131224/19071271/attachment.html 


More information about the Bro mailing list