[Bro] Flow blocking with iptables from Bro

Kamran Khan krkhan at inspirated.com
Wed Jul 3 11:34:51 PDT 2013


On Tue, Jul 2, 2013 at 7:22 AM, Seth Hall <seth at icir.org> wrote:
> What sort of traffic shaping primitives are you considering?

To start off with, we plan on exposing APIs in Bro which would let it:

* Mark 5-tuple flows in mangle table
* Define bandwidth rates for marked traffic

It's pretty simplistic, but our goal is to allow Bro developers to say something
along the lines: "Allocate more bandwidth to traffic that's going out to IP
w.x.y.z."

Regards,
--
Kamran Riaz Khan.

http://inspirated.com/



More information about the Bro mailing list