OSPF Dissector

Hello everyone,

I was wondering if is it possible to make an analyzer of OSPF with Binpac. The problem that I face is that OSPF is a layer 4 (there’s no tcp or udp).

Can anyone give me a solution of my problem?

Thanks you,

Reda Sabir

It sure is!! There’s an excellent lesson how to write analyzers, and another routing protocol is dissected - RIP.

https://www.youtube.com/watch?v=eZAgqSFd9-c

That’s BinPac, so something Bro uses now.