[Bro] CIF and Bro Integration

O'Brion, Tom TOBrion at unum.com
Wed Mar 26 13:54:22 PDT 2014


Quick question when implementing the Intel Framework based on this post:

http://blog.opensecurityresearch.com/2014/03/identifying-malware-traffic-with-bro.html

Do you need to restart & reinstall BRO for it to grab a new feed?  I am going to script up a weekly cif reload and want to make sure.

Thanks

- Tom

- "Life is too short to spend time with people who suck the happy out of you."






More information about the Bro mailing list