Hi!
I have bro version bro-0.9a9 running. I see files in /usr/local/bro/logs correctly, but the reports are empty.
The other problem is the /usr/local/bro/archive direttory is empty too.
What can I do to generate the correctly reports?
I tested with one and two interfaces (etho and eth1), I’m using Red Hat Enterprise ES 3.
I saw the traffice using tcpdump.
Thanks
Angelita