[Bro] Overwriting logs

john Y yjohn9691 at gmail.com
Tue Jun 26 13:05:40 PDT 2018


Hello all!
Need advice about a problem i have:

I am initiating many bro command on dynamically incoming pcaps, such as:
"bro -r some_file_name".

On every run, logs are created in the same directory, but the next run
rewrite those logs. How can bro create logs with uniqe log name foreach run?

Also tried to add timestamp to the log name but did not find how to get
current time.

Love for your help,
John
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/bro/attachments/20180626/fe2ed2e2/attachment.html 


More information about the Bro mailing list