Regarding feature extraction from TCPDUMP file

Hi,

I am Rishikesh Sahay. I am working on the intrusion Detection system. I would like to extract the 41 features based on the DARPA 1999 data set like KDD Cup 1999 data set. I would like to know that is it possible to extract the 41 features from the tcpdump file using BRO IDS 1.5.3. Please,help me in this regard. I will be highly obliged to you for this.

I don't know much about the DARPA data. What are the 41 features?

  .Seth

I am Rishikesh Sahay. I am working on the intrusion Detection system. I
would like to extract the 41 features based on the DARPA 1999 data set like
KDD Cup 1999 data set.

Note, it is very well recognized in the intrusion detection research
community that the DARPA dataset (and even more so the KDD Cup dataset
dervied from it) is useless for assessing detection algorithms. In some
ways, it's worse than useless because it's an "attractive nuisance", i.e.,
it's tempting to use it because of its ready availability. So you really
should refrain from trying to base any sort of meaningful research on it.

    Vern