No description
Find a file
Jeffrey Bencteux 00be145b1b fix setup field handling in smb1_com_transaction_request messages
This field is an array of 16 bit words and was parsed as an array of
32 bit words. Moreover, one can not assume the format is going to be a
16 bits opcode followed by a 16 bit file ID, the content of the setup
field is different according to its first 16 bits word that defines
the subcommand code. See MS-CIFS section 2.2.4.33.1 :

Setup (variable): An array of two-byte words that provides transaction
context to the server. The size and content of the array are specific
to individual subcommands.
2018-01-12 13:00:01 +01:00
aux Updating submodule(s). 2017-12-05 11:19:57 -06:00
cmake@9bac595066 Update submodules 2017-11-10 21:33:17 +01:00
doc Minor Bro docs tweaks for correctness and readability 2017-10-23 15:21:28 -07:00
man Remove -z/--analysis option. 2016-08-04 17:44:38 -07:00
scripts add smb1_transaction2_secondary_request event 2017-12-07 10:01:25 +01:00
src fix setup field handling in smb1_com_transaction_request messages 2018-01-12 13:00:01 +01:00
testing Do not log SOCKS passwords by default. 2017-12-01 14:36:57 -08:00
.gitignore Ignore tmp dir. 2011-10-25 19:59:25 -07:00
.gitmodules Add netcontrol-connectors to aux 2016-08-10 10:16:10 -07:00
bro-config.h.in Extend plugin infrastructure to catch Bro version mismatches at link 2017-07-07 15:58:05 -07:00
bro-config.in Add 'bro-config' script. 2016-08-15 14:45:29 -05:00
bro-path-dev.in Flesh out Broxygen doc-gathering skeleton. 2013-10-22 14:45:47 -05:00
CHANGES Fix documentation for ReassemblerStats. 2017-12-05 11:01:09 -06:00
CMakeLists.txt Add --ccache option to configure script (requires CMake 3.10+). 2017-11-29 14:11:37 -06:00
configure Add --ccache option to configure script (requires CMake 3.10+). 2017-11-29 14:11:37 -06:00
COPYING Update documentation license 2016-10-06 11:35:31 -07:00
INSTALL Make INSTALL a symlink to doc/install/install.rst 2015-03-13 15:45:20 -05:00
Makefile Remove unused "bindist" make target 2016-11-11 15:41:25 -06:00
NEWS Merge remote-tracking branch 'origin/topic/johanna/socks-password' 2017-12-02 09:53:56 -06:00
README Updating README with download/git information. 2013-10-25 15:06:13 -07:00
README.rst Add README.rst -> README symlink. Addresses BIT-1413 2015-09-10 15:22:13 -05:00
VERSION Fix documentation for ReassemblerStats. 2017-12-05 11:01:09 -06:00

============================
Bro Network Security Monitor
============================

Bro is a powerful framework for network analysis and security
monitoring. Please see the INSTALL file for installation instructions
and pointers for getting started. NEWS contains release notes for the
current version, and CHANGES has the complete history of changes.
Please see COPYING for licensing information.

You can download source and binary releases on:

    http://www.bro.org/download

To get the current development version, clone our master git
repository:

    git clone --recursive git://git.bro.org/bro

For more documentation, research publications, and community contact
information, please see Bro's home page:

    http://www.bro.org


On behalf of the Bro Development Team,

Vern Paxson & Robin Sommer,
International Computer Science Institute &
Lawrence Berkeley National Laboratory
vern@icir.org / robin@icir.org