[Bro] Transferring logs from bro

Tim Larson tlarson.hiscorp at gmail.com
Fri Dec 11 10:52:58 PST 2015


Questions:

What is the mechanism and commands within bro for scheduling the periodic
transfer of conn.logs, protocol logs and notice.logs from each of a number
of remotely distributed bro deployments to a central postgresql application
running in a cloud service like AWS using a outbound port 443 connection?

Can the scheduling of the bro log files be based on time and/or a specific
log volume threshold being reached?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20151211/9438a5e3/attachment.html 


More information about the Bro mailing list