Skip to content
This repository has been archived by the owner on Apr 16, 2021. It is now read-only.

securityonion-elsa-extras: add parser for Bro 2.4 mysql.log #755

Closed
dougburks opened this issue Jun 19, 2015 · 4 comments
Closed

securityonion-elsa-extras: add parser for Bro 2.4 mysql.log #755

dougburks opened this issue Jun 19, 2015 · 4 comments

Comments

@dougburks
Copy link
Contributor

https://www.bro.org/download/NEWS.bro.html

"Bro now has support for the MySQL wire protocol. Activity gets logged into mysql.log."

@dougburks
Copy link
Contributor Author

mysql pcap:
https://wiki.wireshark.org/SampleCaptures?action=AttachFile&do=get&target=mysql_complete.pcap

need to fix checksums:
tcprewrite -i mysql_complete.pcap -o mysql.pcap -C

@dougburks
Copy link
Contributor Author

@dougburks
Copy link
Contributor Author

@dougburks
Copy link
Contributor Author

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant