I’m using Zeek 3.1.5.
I need to monitor long running UDP “connections”, some lasting two or three days. If I understand correctly, Zeek only logs UDP connections in conn.log on the connection termination. I would also like to log the start of the connection in conn.log.
Any suggestions on how to start with this?
Thanks
Gary
: : : : : : : : : : : : : : : : : : : : : : : : : : :
Gary Huband
Sr. Software and Systems Engineer
Office: 434.284.8071 x720
Direct: 434.260.4995
Gary@MissionSecure.com
: : : : : : : : : : : : : : : : : : : : : : : : : : :
This email and any files transmitted with it are confidential and proprietary and intended solely for the use of the individual or entity to whom they are addressed. Any dissemination, distribution or copying of this communication is strictly prohibited without our prior permission. If you received this in error, please contact the sender and delete the material from any computer.