[Bro-Dev] [JIRA] (BIT-835) Porting Drop and Catch-n-release to 2.0

2015-09-04 Thread Johanna Amann (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-835?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21967#comment-21967 ] Johanna Amann commented on BIT-835: --- Note that there already is a version of catch and release

[Bro-Dev] [JIRA] (BIT-835) Porting Drop and Catch-n-release to 2.0

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-835?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21966#comment-21966 ] Seth Hall commented on BIT-835: --- Assigned! > Porting Drop and Catch-n-release to 2.0 > --

[Bro-Dev] [JIRA] (BIT-835) Porting Drop and Catch-n-release to 2.0

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-835?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-835: - Assignee: Aashish Sharma > Porting Drop and Catch-n-release to 2.0 >

[Bro-Dev] [JIRA] (BIT-1473) system_env hanging

2015-09-04 Thread Daniel Thayer (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1473?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Daniel Thayer updated BIT-1473: --- Resolution: Works for Me Status: Closed (was: Open) The second example doesn't actually hang

[Bro-Dev] [JIRA] (BIT-1473) system_env hanging

2015-09-04 Thread Wendy Edwards (JIRA)
Wendy Edwards created BIT-1473: -- Summary: system_env hanging Key: BIT-1473 URL: https://bro-tracker.atlassian.net/browse/BIT-1473 Project: Bro Issue Tracker Issue Type: Problem Compone

[Bro-Dev] [JIRA] (BIT-1470) Implemented Functions in Notice Framework

2015-09-04 Thread Daniel Thayer (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1470?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21964#comment-21964 ] Daniel Thayer commented on BIT-1470: I created branch "topic/dnthayer/ticket1470" in the br

[Bro-Dev] [JIRA] (BIT-1470) Implemented Functions in Notice Framework

2015-09-04 Thread Daniel Thayer (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1470?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Daniel Thayer updated BIT-1470: --- Status: Open (was: Merge Request) > Implemented Functions in Notice Framework >

[Bro-Dev] [JIRA] (BIT-1468) old copy of logging documentation on website

2015-09-04 Thread Daniel Thayer (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1468?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Daniel Thayer updated BIT-1468: --- Resolution: Fixed Status: Closed (was: Open) > old copy of logging documentation on website

[Bro-Dev] [JIRA] (BIT-1468) old copy of logging documentation on website

2015-09-04 Thread Daniel Thayer (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1468?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21963#comment-21963 ] Daniel Thayer commented on BIT-1468: This was just an old copy of the one being maintained

[Bro-Dev] [JIRA] (BIT-1468) old copy of logging documentation on website

2015-09-04 Thread Daniel Thayer (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1468?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Daniel Thayer updated BIT-1468: --- Summary: old copy of logging documentation on website (was: logging documentation incomplete) > old

[Bro-Dev] [JIRA] (BIT-1274) Moving GeoIP Code to Plugin

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1274?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1274: --- Resolution: Won't Fix Status: Closed (was: Open) Thanks for working on the plugin! I think we're g

[Bro-Dev] [JIRA] (BIT-875) Modbus REF parameter

2015-09-04 Thread Vlad Grigorescu (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-875?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Vlad Grigorescu updated BIT-875: Labels: Modbus REF analyzer offset (was: Modbus REF analyser, offset) > Modbus REF parameter >

[Bro-Dev] [JIRA] (BIT-874) Handling Modbus exception FC

2015-09-04 Thread Vlad Grigorescu (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-874?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Vlad Grigorescu updated BIT-874: Labels: Modbus analyzer exception fc (was: , Modbus analyser, exception fc) > Handling Modbus excep

[Bro-Dev] [JIRA] (BIT-1430) Cross compilation support

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1430?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1430: --- Fix Version/s: 2.5 > Cross compilation support > - > > Key: BIT-1430

[Bro-Dev] [JIRA] (BIT-1435) &read_expire does not work for embedded table

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1435?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1435: --- Priority: Low (was: Normal) > &read_expire does not work for embedded table > --

[Bro-Dev] [JIRA] (BIT-1441) Logrotation cannot be set when using path_func

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1441?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1441: --- Fix Version/s: 2.5 > Logrotation cannot be set when using path_func > ---

[Bro-Dev] [JIRA] (BIT-1444) Connection logging for ESP

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1444?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21960#comment-21960 ] Seth Hall commented on BIT-1444: Let's get some packet captures attached to this ticket. That

[Bro-Dev] [JIRA] (BIT-1444) Connection logging for ESP

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1444?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1444: --- Priority: Low (was: Normal) > Connection logging for ESP > -- > > Ke

[Bro-Dev] [JIRA] (BIT-1444) Connection logging for ESP

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1444?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1444: -- Assignee: Vlad Grigorescu > Connection logging for ESP > -- > >

[Bro-Dev] [JIRA] (BIT-1450) Improve Python API

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1450?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21959#comment-21959 ] Seth Hall commented on BIT-1450: Justin is going to watch this ticket and maybe look into doing

[Bro-Dev] [JIRA] (BIT-1460) DPD query too large on multicast DNS

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1460?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21958#comment-21958 ] Seth Hall commented on BIT-1460: It might make sense to go ahead and merge this into master and

[Bro-Dev] [JIRA] (BIT-1451) File extraction limits broken

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1451?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1451: -- Assignee: Seth Hall > File extraction limits broken > - > >

[Bro-Dev] [JIRA] (BIT-1460) DPD query too large on multicast DNS

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1460?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1460: -- Assignee: Robin Sommer (was: Seth Hall) > DPD query too large on multicast DNS >

[Bro-Dev] [JIRA] (BIT-1460) DPD query too large on multicast DNS

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1460?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1460: -- Assignee: Seth Hall > DPD query too large on multicast DNS > > >

[Bro-Dev] [JIRA] (BIT-1462) heap overflow in ARP_Analyzer::IsARP

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1462?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1462: --- Resolution: Fixed Status: Closed (was: Open) > heap overflow in ARP_Analyzer::IsARP > --

[Bro-Dev] [JIRA] (BIT-1468) logging documentation incomplete

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1468?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1468: -- Assignee: Daniel Thayer > logging documentation incomplete > > >

[Bro-Dev] [JIRA] (BIT-1469) dpd.log contains lots of binpac exceptions for RDP

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1469?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1469: -- Assignee: Vlad Grigorescu > dpd.log contains lots of binpac exceptions for RDP > -

[Bro-Dev] [JIRA] (BIT-1470) Implemented Functions in Notice Framework

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1470?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1470: -- Assignee: Daniel Thayer > Implemented Functions in Notice Framework >

[Bro-Dev] [JIRA] (BIT-1472) Bif for a new function to calculates haversine distance between two geoip locations

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1472?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1472: -- Assignee: Daniel Thayer > Bif for a new function to calculates haversine distance between two geoip >

[Bro-Dev] [JIRA] (BIT-1472) Bif for a new function to calculates haversine distance between two geoip locations

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1472?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21957#comment-21957 ] Seth Hall commented on BIT-1472: We need to update to the libGeoIP2 API anyway and we could pu

[Bro-Dev] [JIRA] (BIT-1336) ElasticSearch indices in UTC

2015-09-04 Thread Vlad Grigorescu (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1336?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21956#comment-21956 ] Vlad Grigorescu commented on BIT-1336: -- The fix for this is in topic/vladg/es-fixes in the

[Bro-Dev] [JIRA] (BIT-1336) ElasticSearch indices in UTC

2015-09-04 Thread Vlad Grigorescu (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1336?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Vlad Grigorescu updated BIT-1336: - Status: Merge Request (was: Open) Assignee: (was: Seth Hall) > ElasticSearch indices i

[Bro-Dev] [JIRA] (BIT-835) Porting Drop and Catch-n-release to 2.0

2015-09-04 Thread Aashish Sharma (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-835?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21955#comment-21955 ] Aashish Sharma commented on BIT-835: I'd take this one! On Fri, Sep 04, 2015 at 07:52:00A

Re: [Bro-Dev] [JIRA] (BIT-835) Porting Drop and Catch-n-release to 2.0

2015-09-04 Thread Aashish Sharma
> We just need someone to take it on once enough of the infrastructure is in > place. I'd take this one! On Fri, Sep 04, 2015 at 07:52:00AM -0500, Seth Hall (JIRA) wrote: > > [ > https://bro-tracker.atlassian.net/browse/BIT-835?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-

[Bro-Dev] [JIRA] (BIT-1396) Logs disappearing on broctl restart

2015-09-04 Thread Daniel Thayer (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1396?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Daniel Thayer updated BIT-1396: --- Resolution: Cannot Reproduce Fix Version/s: (was: 2.4) Status: Closed (was: Reo

[Bro-Dev] [JIRA] (BIT-1396) Logs disappearing on broctl restart

2015-09-04 Thread Aashish Sharma (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1396?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21954#comment-21954 ] Aashish Sharma commented on BIT-1396: - Please close it! If I encounter this again, I will

[Bro-Dev] [JIRA] (BIT-1396) Logs disappearing on broctl restart

2015-09-04 Thread Daniel Thayer (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1396?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Daniel Thayer reassigned BIT-1396: -- Assignee: Daniel Thayer > Logs disappearing on broctl restart > --

[Bro-Dev] [JIRA] (BIT-1469) dpd.log contains lots of binpac exceptions for RDP

2015-09-04 Thread Gary Faulkner (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1469?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21953#comment-21953 ] Gary Faulkner commented on BIT-1469: Sorry, let's try this again with snaplen set to 1514.

[Bro-Dev] [JIRA] (BIT-1469) dpd.log contains lots of binpac exceptions for RDP

2015-09-04 Thread Gary Faulkner (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1469?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Gary Faulkner updated BIT-1469: --- Attachment: bad-rdp-04SEP15-2.pcap > dpd.log contains lots of binpac exceptions for RDP > ---

[Bro-Dev] [JIRA] (BIT-1469) dpd.log contains lots of binpac exceptions for RDP

2015-09-04 Thread Gary Faulkner (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1469?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21952#comment-21952 ] Gary Faulkner edited comment on BIT-1469 at 9/4/15 10:32 AM: - I'm a

[Bro-Dev] [JIRA] (BIT-1469) dpd.log contains lots of binpac exceptions for RDP

2015-09-04 Thread Gary Faulkner (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1469?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21952#comment-21952 ] Gary Faulkner edited comment on BIT-1469 at 9/4/15 10:31 AM: - I'm a

[Bro-Dev] [JIRA] (BIT-1469) dpd.log contains lots of binpac exceptions for RDP

2015-09-04 Thread Gary Faulkner (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1469?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Gary Faulkner updated BIT-1469: --- Attachment: bad-rdp-04SEP15.pcap > dpd.log contains lots of binpac exceptions for RDP > -

[Bro-Dev] [JIRA] (BIT-1469) dpd.log contains lots of binpac exceptions for RDP

2015-09-04 Thread Gary Faulkner (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1469?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21952#comment-21952 ] Gary Faulkner commented on BIT-1469: I'm attaching a new pcap that should have the packets

[Bro-Dev] [JIRA] (BIT-1469) dpd.log contains lots of binpac exceptions for RDP

2015-09-04 Thread Gary Faulkner (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1469?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21951#comment-21951 ] Gary Faulkner commented on BIT-1469: I can try to get another capture of the scanning activ

[Bro-Dev] [JIRA] (BIT-1033) add script based on BBN's ICMP analyzer

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1033?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1033: -- Assignee: Vlad Grigorescu > add script based on BBN's ICMP analyzer >

[Bro-Dev] [JIRA] (BIT-1033) add script based on BBN's ICMP analyzer

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1033?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21950#comment-21950 ] Seth Hall commented on BIT-1033: Vlad, you want to take this on? I agree that it would be a ne

[Bro-Dev] [JIRA] (BIT-1026) runtime error with local set of record with optional fields

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1026?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1026: --- Resolution: No longer applies Status: Closed (was: Open) I'm going to close this since we typically

[Bro-Dev] [JIRA] (BIT-898) Confusion over the accept_input field in communication code

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-898?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-898: -- Resolution: No longer applies Status: Closed (was: Open) This code is all going away and/or being refac

[Bro-Dev] [JIRA] (BIT-939) HTTP parser refact & redesign required

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-939?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-939: -- Resolution: Incomplete Status: Closed (was: Open) This ticket is old and unfortunately light on details

[Bro-Dev] [JIRA] (BIT-789) An example of a BiF : computing Conficker P2P ports

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-789?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-789: -- Resolution: No longer applies Status: Closed (was: Open) Bifs like this can be written as plugins now a

[Bro-Dev] [JIRA] (BIT-809) HTTP file extraction not correct

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-809?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-809: -- Resolution: Fixed Status: Closed (was: Open) I just tested and this bug no longer exists in Bro. There

[Bro-Dev] [JIRA] (BIT-1413) README files misidentified by GitHub

2015-09-04 Thread Vlad Grigorescu (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1413?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21944#comment-21944 ] Vlad Grigorescu commented on BIT-1413: -- Sure. I'll go with the symlink idea. > README fil

[Bro-Dev] [JIRA] (BIT-1414) Make PIE option availalbe during compiling

2015-09-04 Thread Vlad Grigorescu (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1414?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Vlad Grigorescu updated BIT-1414: - Resolution: Cannot Reproduce Status: Closed (was: Open) > Make PIE option availalbe duri

[Bro-Dev] [JIRA] (BIT-835) Porting Drop and Catch-n-release to 2.0

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-835?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-835: -- Fix Version/s: 2.5 > Porting Drop and Catch-n-release to 2.0 > --- > >

[Bro-Dev] [JIRA] (BIT-835) Porting Drop and Catch-n-release to 2.0

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-835?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21943#comment-21943 ] Seth Hall commented on BIT-835: --- We should be able to get a very nice version of this into 2.5 wit

[Bro-Dev] [JIRA] (BIT-854) problem with VLAN/MPLS packet dumping

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-854?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-854: -- Resolution: Duplicate Status: Closed (was: Open) > problem with VLAN/MPLS packet dumping >

[Bro-Dev] [JIRA] (BIT-854) problem with VLAN/MPLS packet dumping

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-854?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21942#comment-21942 ] Seth Hall commented on BIT-854: --- This is related to BIT-1398 but that includes some more informati

[Bro-Dev] [JIRA] (BIT-1460) DPD query too large on multicast DNS

2015-09-04 Thread Vlad Grigorescu (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1460?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Vlad Grigorescu updated BIT-1460: - Status: Merge Request (was: Open) > DPD query too large on multicast DNS > -

[Bro-Dev] [JIRA] (BIT-1460) DPD query too large on multicast DNS

2015-09-04 Thread Vlad Grigorescu (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1460?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21941#comment-21941 ] Vlad Grigorescu commented on BIT-1460: -- The issue here is src/analyzer/protocol/dns/DNS.cc

[Bro-Dev] [JIRA] (BIT-1047) Delete old scripts before installing new ones

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1047?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21940#comment-21940 ] Seth Hall commented on BIT-1047: What's the status on this ticket? Have we arrived at a decisi

[Bro-Dev] [JIRA] (BIT-1047) Delete old scripts before installing new ones

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1047?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1047: -- Assignee: Daniel Thayer > Delete old scripts before installing new ones >

[Bro-Dev] [JIRA] (BIT-1314) Detect "quantum insert" type of attacks

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1314?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1314: --- Resolution: Fixed Status: Closed (was: Open) This is already merged into master and is usable from t

[Bro-Dev] [JIRA] (BIT-1363) Clustered AF_PACKET support

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1363?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21938#comment-21938 ] Seth Hall commented on BIT-1363: It actually sort of is supported, but it's hacky. If you give

[Bro-Dev] [JIRA] (BIT-1378) Include extract_files in archives

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1378?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21937#comment-21937 ] Seth Hall commented on BIT-1378: Daniel, would you mind exploring the ramifications of this? T

[Bro-Dev] [JIRA] (BIT-1428) Customizable email subject lines

2015-09-04 Thread Jan Grashoefer (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1428?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21936#comment-21936 ] Jan Grashoefer commented on BIT-1428: - Meanwhile: I am using broctl's MailSubjectPrefix to

[Bro-Dev] [JIRA] (BIT-1398) PPPoE PCAP stripping laters

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1398?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1398: --- Labels: full_packet_capture (was: ) > PPPoE PCAP stripping laters > --- > >

[Bro-Dev] [JIRA] (BIT-1378) Include extract_files in archives

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1378?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1378: -- Assignee: Daniel Thayer > Include extract_files in archives > - > >

[Bro-Dev] [JIRA] (BIT-1411) SQL_Injection_Victim is a misleading name

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1411?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21935#comment-21935 ] Seth Hall commented on BIT-1411: This is a good point and now I wish I had named it differently

[Bro-Dev] [JIRA] (BIT-1413) README files misidentified by GitHub

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1413?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21934#comment-21934 ] Seth Hall commented on BIT-1413: Vlad, are you up for doing this? > README files misidentifie

[Bro-Dev] [JIRA] (BIT-1413) README files misidentified by GitHub

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1413?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall reassigned BIT-1413: -- Assignee: Vlad Grigorescu > README files misidentified by GitHub > ---

[Bro-Dev] [JIRA] (BIT-1418) SSH::Login_By_Password_Guesser is not implemented

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1418?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1418: --- Affects Version/s: 2.5 > SSH::Login_By_Password_Guesser is not implemented >

[Bro-Dev] [JIRA] (BIT-1418) SSH::Login_By_Password_Guesser is not implemented

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1418?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21933#comment-21933 ] Seth Hall commented on BIT-1418: This should be possible to implement with Broker's distributed

[Bro-Dev] [JIRA] (BIT-1428) Customizable email subject lines

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1428?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21932#comment-21932 ] Seth Hall commented on BIT-1428: I've been considering writing a simple mail or mailer framewor

[Bro-Dev] [JIRA] (BIT-1438) Code example from the documentation fails with "unknown identifier" error

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1438?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1438: --- Resolution: Fixed Status: Closed (was: Open) > Code example from the documentation fails with "unkno

[Bro-Dev] [JIRA] (BIT-1461) Bro Mgr Scripts Fail After Threat Intel Feed Add

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1461?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1461: --- Priority: Low (was: Normal) > Bro Mgr Scripts Fail After Threat Intel Feed Add > ---

[Bro-Dev] [JIRA] (BIT-1460) DPD query too large on multicast DNS

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1460?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Seth Hall updated BIT-1460: --- Labels: analyzer (was: ) > DPD query too large on multicast DNS > > >

[Bro-Dev] [JIRA] (BIT-1469) dpd.log contains lots of binpac exceptions for RDP

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1469?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21931#comment-21931 ] Seth Hall commented on BIT-1469: Does anyone have packets they can contribute that tickle this

[Bro-Dev] [JIRA] (BIT-1396) Logs disappearing on broctl restart

2015-09-04 Thread Seth Hall (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1396?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=21930#comment-21930 ] Seth Hall commented on BIT-1396: Aashish, one more ping on this before we close it. :) > Logs

[Bro-Dev] [Auto] Merge Status

2015-09-04 Thread Merge Tracker
Open Merge Requests === IDComponentReporter AssigneeUpdated For Version PrioritySummary --- - -- -- - -- - BIT-1470 [1] Bro