[Bro] No http.log and dns.log missing

Monah Baki monahbaki at gmail.com
Mon May 18 06:31:23 PDT 2015


netstat -i

Kernel Interface table
Iface   MTU Met   RX-OK RX-ERR RX-DRP RX-OVR    TX-OK TX-ERR TX-DRP TX-OVR
Flg
eth0       1500 0    463397      0     10 0        521906      0
0      0 BMRU
eth1       1500 0  299482016      0     28 0             8      0
0      0 BMRU

eth1 is my listening interface


Thanks

On Mon, May 18, 2015 at 9:21 AM, Yahoo <cbakkers at yahoo.de> wrote:

> have you checked if your interfaces are running in promiscuous mode?
>
>
>
> > On 18 May 2015, at 15:02, Monah Baki <monahbaki at gmail.com> wrote:
> >
> > Bro seems to have all the logs except http and dns. If I run a quick
> tcpdump on my interface for port 80 and 53, I do see event.
> >
> > Anything else I can troubleshoot for?
> >
> >
> > Thanks
> > Monah
> > _______________________________________________
> > Bro mailing list
> > bro at bro-ids.org
> > http://mailman.ICSI.Berkeley.EDU/mailman/listinfo/bro
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20150518/dda4d15c/attachment.html 


More information about the Bro mailing list