Hi list,
I’m curious if anyone has had success with the new plugin structure (for the bro binary, not broctl plugins). Has anyone used it yet? If so, what have you done?
-AK
Hi list,
I’m curious if anyone has had success with the new plugin structure (for the bro binary, not broctl plugins). Has anyone used it yet? If so, what have you done?
-AK
I started working on a RAR analyzer as a plugin recently.
.Seth
I've used it, naturally. The bro-plugins repository has all the
plugins I've implemented so far. There's also a set of unit tests in
testing/btest/plugins, which can serve as examples as well.
And it's easy to miss right now that there's some documentation on
writing plugins: https://www.bro.org/sphinx-git/devel/plugins.html
(that's not yet linked from anywhere, need to fix).
Robin