[Bro] Dynamic protocol Detection

usman shafique usmanshafique68 at hotmail.com
Sun May 31 12:06:26 PDT 2015


any idea regarding dynamic protocol detection in bro give me simple script example

> Date: Thu, 28 May 2015 14:05:25 -0600
> From: jlay at slave-tothe-box.net
> To: bro at bro.org
> Subject: Re: [Bro] Quick PF_RING question
> 
> On 2015-05-28 01:58 PM, Seth Hall wrote:
> >> On May 28, 2015, at 11:47 AM, James Lay <jlay at slave-tothe-box.net> 
> >> wrote:
> >> 
> >> So I'm reading up and wanting to try out PF_RING for bro.  Is there a
> >> way you use this using command line bro?  The documentation only talks
> >> about clustering using PF_RING, and that's not what I want to do.  End
> >> goal is to reduce packet loss.  Thank you.
> > 
> > Yeah, just take a look at the pf_ring plugin in broctl.  There are
> > just a few environment variables you need to set.
> > 
> >   .Seht
> > 
> > --
> > Seth Hall
> > International Computer Science Institute
> > (Bro) because everyone has a network
> > http://www.bro.org/
> 
> Perfect..thanks for the direction Seth.
> 
> James
> _______________________________________________
> Bro mailing list
> bro at bro-ids.org
> http://mailman.ICSI.Berkeley.EDU/mailman/listinfo/bro
 		 	   		  
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20150601/3c005393/attachment.html 


More information about the Bro mailing list