[Bro] BRO sniffing traffic on a VLAN

masoom alam masoom.alam at gmail.com
Sat Oct 10 02:54:15 PDT 2015


Dear ALL,

I have plugged BRO in my lab in the mirrored port of a physical switch.
Thus BRO is able to sniff all the traffic.

My question is that if we install BRO on a simple linux machine and try
sniffing a LAN traffic for analysis for example, do we need some special
measure? I mean is it necessary that BRO should be plugged in the mirrored
port...

Thanks
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20151010/fc79ad95/attachment.html 


More information about the Bro mailing list