Merge branch 'topic/dopheide/known-services' of https://github.com/dopheide-esnet/zeek

- Updated the logic significantly: still filters out ICMP from being
  considered an active service (like before) and adds a new
  "Known::service_udp_requires_response" option (defaults to true) for
  whether to require UDP server response before being considered an
  active service.

* 'topic/dopheide/known-services' of https://github.com/dopheide-esnet/zeek:
  Log services with unknown protocols
This commit is contained in:
Jon Siwek 2020-05-29 17:13:36 -07:00
commit 2f918ed9b2
10 changed files with 95 additions and 29 deletions

View file

@ -1 +1 @@
b8d14675f2662204995b924cdd8ffa9454e0a06c
f035d3c81512c5a6faf1175ff60148a1b40bfed4