[Bro] Differences between conn.log and known_services.log

Vito Logrillo vitologrillo at gmail.com
Wed Jan 7 07:17:23 PST 2015


Hi,
conn.log and known_services.log have a field named "service":
sometimes this filed is empty in conn.log but in known_services.log is
not...Why?
This field should be processed in the same way by the two logs...or not?
Thanks,
Vito


More information about the Bro mailing list