<feed xmlns='http://www.w3.org/2005/Atom'>
<title>mirrors/midbro/bro-script/README, branch broccoli-events</title>
<subtitle>Packet Capturing for Intrusion Detection Systems (GitHub mirror)
</subtitle>
<id>https://git.ireas.org/mirrors/midbro/atom?h=broccoli-events</id>
<link rel='self' href='https://git.ireas.org/mirrors/midbro/atom?h=broccoli-events'/>
<link rel='alternate' type='text/html' href='https://git.ireas.org/mirrors/midbro/'/>
<updated>2017-09-25T21:29:18Z</updated>
<entry>
<title>bro-script: Explain log file source in README</title>
<updated>2017-09-25T21:29:18Z</updated>
<author>
<name>Robin Krahl</name>
<email>guskraro@student.gu.se</email>
</author>
<published>2017-09-25T21:29:18Z</published>
<link rel='alternate' type='text/html' href='https://git.ireas.org/mirrors/midbro/commit/?id=46f518825c4e934b950c1ce0c9936fd106798408'/>
<id>urn:sha1:46f518825c4e934b950c1ce0c9936fd106798408</id>
<content type='text'>
</content>
</entry>
<entry>
<title>bro-script: Add simple baseline implementation</title>
<updated>2017-09-25T20:58:16Z</updated>
<author>
<name>Robin Krahl</name>
<email>guskraro@student.gu.se</email>
</author>
<published>2017-09-25T20:55:08Z</published>
<link rel='alternate' type='text/html' href='https://git.ireas.org/mirrors/midbro/commit/?id=7c55cebd914ac059b9c91a897cb00011b689eb57'/>
<id>urn:sha1:7c55cebd914ac059b9c91a897cb00011b689eb57</id>
<content type='text'>
This implementation only logs the (combined) request and response events
that occur within the same connection.  This assumes that a response is
always send over the same connection as a request.  It is unclear
whether this assumption really holds.

This implementation does not yet contain error handling, so if there was
no response for a request, Bro displays an error message.

It also does not contain an interpretation of the values, so if multiple
values are read within one request, they are displayed in the same log
entry.
</content>
</entry>
<entry>
<title>Add directory for bro-script</title>
<updated>2017-09-25T20:45:12Z</updated>
<author>
<name>Robin Krahl</name>
<email>guskraro@student.gu.se</email>
</author>
<published>2017-09-25T20:45:12Z</published>
<link rel='alternate' type='text/html' href='https://git.ireas.org/mirrors/midbro/commit/?id=478b8df6262d405015bf2ea7ca28ef06d2df3e5e'/>
<id>urn:sha1:478b8df6262d405015bf2ea7ca28ef06d2df3e5e</id>
<content type='text'>
Add a (nearly) empty directory for the baseline implementation of the
payload extraction as a Bro script executed directly within Bro.
</content>
</entry>
</feed>
