zeek/scripts/base/protocols/smb
Seth Hall 5b5589e167 Complete breakout of SMB, GSSAPI, and NTLM
- Looser coupling between these analyzers.
 - New ntlm.log (still pretty early)
 - Improved string handling for NTLM (convert UTF16 to UTF8)
 - SMB2 analyzer now supports GSSAPI.
 - Improved abstraction of DCE_RPC operations (still not finished)
 - Lots of whitespace cleanup.
2016-04-03 04:17:20 -04:00
..
__load__.bro Add a signature for SMB 2016-03-07 16:03:31 -05:00
const-dos-error.bro SMB & NTLM analyzers. 2014-07-24 21:46:38 -04:00
const-nt-status.bro SMB & NTLM analyzers. 2014-07-24 21:46:38 -04:00
consts.bro Redo DCE/RPC code. 2014-10-09 21:06:38 -04:00
dpd.sig Add a signature for SMB 2016-03-07 16:03:31 -05:00
files.bro Removing some left over debugging prints. 2016-04-01 09:48:46 -04:00
main.bro Fixes to SMB file handling and logging. 2016-04-01 09:43:13 -04:00
pipe.bro A lot of changes to SMB analyzer. 2016-03-03 14:27:15 -05:00
smb1-main.bro Complete breakout of SMB, GSSAPI, and NTLM 2016-04-03 04:17:20 -04:00
smb2-main.bro Fixes to SMB file handling and logging. 2016-04-01 09:43:13 -04:00