[Bro] Filenames not extracted in files.log

Seth Hall seth at icir.org
Tue Apr 29 20:16:44 PDT 2014


On Apr 29, 2014, at 10:42 PM, Charles A. Fair <charles.fair at mac.com> wrote:

> The file analysis framework does not annotate the original file names as I understand it.

The file analysis framework itself doesn't do it.  Some of the protocol scripts poke forward into files transferred and annotate the files log with a file name if a suitable one was found.

  .Seth

--
Seth Hall
International Computer Science Institute
(Bro) because everyone has a network
http://www.bro.org/

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 495 bytes
Desc: Message signed with OpenPGP using GPGMail
Url : http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20140429/0bc8f9a9/attachment.bin 


More information about the Bro mailing list