[Bro] Fwd: saving raw packet payload to text file

Fateme Eskandari f.eskandary2009 at gmail.com
Sat Jun 6 14:03:54 PDT 2015


dear all
i have a pcap file that contain data about some protocols. i want to have a
text file for every protocol from my pcap file that contains all raws of
packet payload in asccii format. just like this:
which command could i use?
please guide me
thanks a lot

GET / HTTP/1.1
Host: www.google.com
Connection: keep-alive
Accept:
text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8
User-Agent: Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.36 (KHTML,
like Gecko) Chrome/40.0.2311.90 Safari/537.36
Referer: https://www.google.com/
Accept-Encoding: gzip, deflate, sdch
Accept-Language: en-US,en;q=0.8,fa;q=0.6,nl;q=0.4,de;q=0.2

HTTP/1.1 200 OK
Server: nginx/1.4.6 (Ubuntu)
Date: Tue, 21 Apr 2010 2:38:54 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: keep-alive
Vary: Accept-Encoding
X-Powered-By: PHP/5.5.9-1ubuntu4.9
Set-Cookie: PHPSESSID=agg92fl57l5si815a03tr269h1; path=/
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0,
pre-check=0
Pragma: no-cache
Set-Cookie: testcookie=1
Content-Encoding: gzip


-- 

Fateme Eskandari

Research Assistant at Network Security Research Group

Iran University Of Science and Technology
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20150607/7d3c53c9/attachment.html 


More information about the Bro mailing list