[Bro] - see all triggered events on a given pcap file

william de ping bill.de.ping at gmail.com
Sun May 28 08:37:41 PDT 2017


Thank you very much !
it works great :)

On Sun, May 28, 2017 at 6:06 PM, Keith Lehigh <klehigh at iu.edu> wrote:

>  policy/misc/dump-events.bro does exactly what you want.
>
> - Keith
> > On May 28, 2017, at 10:36, william de ping <bill.de.ping at gmail.com>
> wrote:
> >
> > Hi all,
> >
> > Does anyone know a way to get a list of all triggered events given a
> pcap file ?
> >
> > Currently what I do is just print some indicative message for each
> suspected relevant events (quit tedious task)
> >
> > Thanks
> > B
> > _______________________________________________
> > Bro mailing list
> > bro at bro-ids.org
> > http://mailman.ICSI.Berkeley.EDU/mailman/listinfo/bro
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20170528/77ae4bc1/attachment.html 


More information about the Bro mailing list