Github user basvdl commented on the issue:
https://github.com/apache/metron/pull/531
@nickwallen sometimes we are not able to grep DNS events from the customer
server. In these cases we use DHCPDump.
I've to admit, Bro is new to me, but it looks promising. If this can
fulfill our requirement, It would be a good replacement since it can also grep
other protocols as well.
@JonZeolla lookups are also not always an option for us.
---
If your project is set up for it, you can reply to this email and have your
reply appear on GitHub as well. If your project does not have this feature
enabled and wishes so, or if the feature is enabled but not working, please
contact infrastructure at [email protected] or file a JIRA ticket
with INFRA.
---