Warren Kumari <[email protected]> wrote:
    > The IETF is traditionally not very good at formats and such, but I'm
    > game to try progress it under OpsAWG.  W

On Sunday at the ETSI 6lo plugfest Dominique Barthel described to me a way
that the IOT-Lab is using *pcap* (with custom LINKTYPE_USR0...) in a
syslog/MILE/INCH-like way, except that they are debug events rather than
security events.  Interspersed with packets that were actually captured and
caused the debug... viewable in wireshark.

PCAP files already travel over TCP and SSH connections between collectors and
analyzers... so it's not just a format at rest anymore.

I am not subscribed to the opsawg list, I'm sure.

--
Michael Richardson <[email protected]>, Sandelman Software Works
 -= IPv6 IoT consulting =-



Attachment: signature.asc
Description: PGP signature

_______________________________________________
OPSAWG mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/opsawg

Reply via email to