[Zeek] New Analyzer

Justin Azoff justin at corelight.com
Wed Jul 10 17:20:20 PDT 2019


On Wed, Jul 10, 2019 at 8:16 PM Aaron Heller <deltah24 at gmail.com> wrote:

>  Maybe that and the analyzer not automatically firing off indicates an
> issue with the bacnet script not being called appropriately?  I'm grasping
> at straws, so any thoughts are greatly appreciated!
>

I don't think you are loading the scripts at all..  which is also why the
sigs aren't loaded.

Are you building this as an in-tree analyzer or as an external plugin?

-- 
Justin
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ICSI.Berkeley.EDU/pipermail/zeek/attachments/20190710/7c9ec473/attachment.html 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: image001.jpg
Type: image/jpeg
Size: 362 bytes
Desc: not available
Url : http://mailman.ICSI.Berkeley.EDU/pipermail/zeek/attachments/20190710/7c9ec473/attachment.jpg 


More information about the Zeek mailing list