blob: 03d91586c575727e13503f659ded8f143d47e69a (
plain)
1
2
3
4
5
6
7
8
|
This directory contains a baseline implementation of the package parser
implemented as a Bro script. A .bro file contains a script that can be
executed on a Modbus pcap dump. A .log file contains an example for an
output file generated by this script. By convention, the sample log file
should contain the first 100 lines of a real log file.
Currently, the scripts only handle the read_holding_registers event. Other
events can handled by simply copying and adapting the existing handlers.
|