[Oisf-users] Suricata's http-log

Seth Hall seth at icir.org
Fri Mar 30 16:45:28 UTC 2012


On Mar 30, 2012, at 11:30 AM, Peter Bates wrote:

> Running httpry and Suricata with a BPF of a known host and generating
> various GET requests seems to elicit identical logs (when eliminating
> the fact that httpry logs the response as Martin noted so the log is
> double the size).


We wouldn't even complain if you threw Bro in the mix for comparing logs. :)

  .Seth

--
Seth Hall
International Computer Science Institute
(Bro) because everyone has a network
http://www.bro-ids.org/




More information about the Oisf-users mailing list