[prev in list] [next in list] [prev in thread] [next in thread] 

List:       bro
Subject:    [Bro] Question on BInPAC Sample analyzer
From:       "Hui Lin (Hugo) " <hlin33 () illinois ! edu>
Date:       2018-03-19 6:29:23
Message-ID: CAKq214kwJhM6Rc3qhU1Axp5bmeqq4ZVCCupxosF0QO+ZYQtAbw () mail ! gmail ! com
[Download RAW message or body]

[Attachment #2 (multipart/alternative)]


 Hi

I have tried to study the updated way to install sample analyzer through
BinPAC. I followed the instructions on https://www.bro.org/
development/howtos/binpac-sample-analyzer.html. I encountered two questions:
1. It seems that the parameter of "--buffered" is not working. Executing
this command with this parameter generate datagram analyzer not flowunit
one.
2. After installing the sample analyzer through the script, what should I
do to remove them? I tried to directly remove two directories,
scripts/base/protocols/sample/  and src/analyzer/protocol/sample/, but this
will give me CMake configuration errors if I try to compile Bro again.

Thank you and best regards,

Hui Lin

[Attachment #5 (text/html)]

<div dir="ltr"><div class="gmail_default" \
style="font-family:arial,helvetica,sans-serif;font-size:small"> <div \
class="gmail_default" \
style="font-family:arial,helvetica,sans-serif;font-size:small">Hi <br><br></div><div \
class="gmail_default" \
style="font-family:arial,helvetica,sans-serif;font-size:small">I have tried to study \
the updated way to install sample analyzer through BinPAC. I followed the \
instructions on <a href="https://www.bro.org/development/howtos/binpac-sample-analyzer.html" \
target="_blank">https://www.bro.org/<wbr>development/howtos/binpac-<wbr>sample-analyzer.html</a>. \
I encountered two questions:<br></div><div class="gmail_default" \
style="font-family:arial,helvetica,sans-serif;font-size:small">1. It seems that the \
parameter of &quot;--buffered&quot; is not working. Executing this command with this \
parameter generate datagram analyzer not flowunit one.<br></div><div \
class="gmail_default" \
style="font-family:arial,helvetica,sans-serif;font-size:small">2. After installing \
the sample analyzer through the script, what should I do to remove them? I tried to \
directly remove two directories, <tt \
class="gmail-m_-7214526515459664196gmail-docutils \
gmail-m_-7214526515459664196gmail-literal">scripts/base/protocols/sample/</tt><wbr>   \
and <tt class="gmail-m_-7214526515459664196gmail-docutils \
gmail-m_-7214526515459664196gmail-literal">src/analyzer/protocol/sample/</tt>, but \
this will give me CMake configuration errors if I try to compile Bro again. \
<br><br></div><div class="gmail_default" \
style="font-family:arial,helvetica,sans-serif;font-size:small">Thank you and best \
regards,<br><br></div><div class="gmail_default" \
style="font-family:arial,helvetica,sans-serif;font-size:small">Hui Lin</div>

</div></div>



_______________________________________________
Bro mailing list
bro@bro-ids.org
http://mailman.ICSI.Berkeley.EDU/mailman/listinfo/bro

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic