aboutsummaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAge
* Add script to execute midbropasad & brobroccoli-eventsRobin Krahl2017-10-10
|
* investigate.sh: Fix the handling of relative dump pathsRobin Krahl2017-10-10
|
* Add investigate script that extracts and plots dataRobin Krahl2017-10-10
|
* Add a filtering option to the Modbus Bro scriptRobin Krahl2017-10-09
|
* broevent: Combine the pasad-parsed script with midbroRobin Krahl2017-10-04
|
* fifoqueue: Release (or do not acquire) mutex in all cases in add_to_queueRobin Krahl2017-10-04
|
* Create output dirs when compilingRobert Gustafsson2017-10-03
|
* Some refactoringRobert Gustafsson2017-10-03
|
* Add some basic unit testsRobert Gustafsson2017-10-02
|
* Fix memory alloc issue in fifoqueueRobert Gustafsson2017-10-02
|
* Add blocking wait when buffer is emptyRobert Gustafsson2017-09-29
|
* Add new thread for event handlingRobert Gustafsson2017-09-28
|
* Add new main fileRobert Gustafsson2017-09-28
|
* Move includes folder to broccoliRobert Gustafsson2017-09-28
|
* Some renamingRobert Gustafsson2017-09-28
|
* Add basic fifoqueue to buffer eventsRobert Gustafsson2017-09-28
|
* Add first test of broccoliRobert Gustafsson2017-09-26
|
* bro-script: Explain log file source in READMERobin Krahl2017-09-25
|
* bro-script: Add more advanced implementationRobin Krahl2017-09-25
| | | | | | | Add a more advanced Bro script implementation that outputs the address and the register value, one line per address. This approach also suffers from the connection assumption described for pasad-simple and contains no sanity checks at all.
* bro-script: pasad-simple: Change log name to pasad-simpleRobin Krahl2017-09-25
|
* bro-script: pasad-simple: Fix typoRobin Krahl2017-09-25
| | | | Write ‘address’ instead of ‘adress’.
* bro-script: Add simple baseline implementationRobin Krahl2017-09-25
| | | | | | | | | | | | | | This implementation only logs the (combined) request and response events that occur within the same connection. This assumes that a response is always send over the same connection as a request. It is unclear whether this assumption really holds. This implementation does not yet contain error handling, so if there was no response for a request, Bro displays an error message. It also does not contain an interpretation of the values, so if multiple values are read within one request, they are displayed in the same log entry.
* Add directory for bro-scriptRobin Krahl2017-09-25
Add a (nearly) empty directory for the baseline implementation of the payload extraction as a Bro script executed directly within Bro.