[Bro-Dev] [JIRA] (BIT-1564) BroControl incorrectly references ok attribute of results even when None type is returned

2016-04-28 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1564?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1564: -- Resolution: Merged (was: Fixed) Status: Closed (was: Merge Request) > BroControl incorrectly

[Bro-Dev] [JIRA] (BIT-1549) broctl top command doesn't work on OS X 10.10 or newer

2016-04-28 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1549?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1549: -- Resolution: Merged (was: Fixed) Status: Closed (was: Merge Request) > broctl top command

[Bro-Dev] [JIRA] (BIT-1547) broctl sets the same state variables over and over

2016-03-31 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1547?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=25303#comment-25303 ] Justin Azoff commented on BIT-1547: --- Merged.. Can you see about merging master back into

[Bro-Dev] [JIRA] (BIT-1547) broctl sets the same state variables over and over

2016-03-31 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1547?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1547: -- Resolution: Merged (was: Fixed) Status: Closed (was: Merge Request) > broctl sets the same

[Bro-Dev] [JIRA] (BIT-1562) Bro v2.4.1 lock with a old pcap file

2016-03-28 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1562?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=25203#comment-25203 ] Justin Azoff commented on BIT-1562: --- This looks like BIT-1443. {code} $ tcpdump -n -r bro241lock.pcap |cut

[Bro-Dev] [JIRA] (BIT-1545) SSH connection not recording entire flow correctly

2016-03-10 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1545?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=24803#comment-24803 ] Justin Azoff commented on BIT-1545: --- The other thing to keep in mind is how this affects missed_bytes and

[Bro-Dev] [JIRA] (BIT-1547) broctl sets the same state variables over and over

2016-03-07 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1547?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=24701#comment-24701 ] Justin Azoff commented on BIT-1547: --- Before the change: real1m32.978s After the change: real0m6.413s

[Bro-Dev] [JIRA] (BIT-1545) SSH connection not recording entire flow correctly

2016-03-04 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1545?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=24611#comment-24611 ] Justin Azoff commented on BIT-1545: --- Oh, right... I knew that option existed but I missed that the default

[Bro-Dev] [JIRA] (BIT-1547) broctl sets the same state variables over and over

2016-03-04 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1547: - Summary: broctl sets the same state variables over and over Key: BIT-1547 URL: https://bro-tracker.atlassian.net/browse/BIT-1547 Project: Bro Issue Tracker Issue

[Bro-Dev] [JIRA] (BIT-1545) SSH connection not recording entire flow correctly

2016-03-04 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1545?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=24608#comment-24608 ] Justin Azoff commented on BIT-1545: --- I also realized it does the same thing on our standard ssh.pcap, so this

[Bro-Dev] [JIRA] (BIT-1521) known services should probably ignore gridftp-data

2016-02-17 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1521?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=24200#comment-24200 ] Justin Azoff commented on BIT-1521: --- topic/jazoff/ticket1521 contains a branch that I believe fixes most of

[Bro-Dev] [JIRA] (BIT-1535) conn.log conn_state field or documentation is wrong

2016-02-10 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1535: - Summary: conn.log conn_state field or documentation is wrong Key: BIT-1535 URL: https://bro-tracker.atlassian.net/browse/BIT-1535 Project: Bro Issue Tracker Issue

[Bro-Dev] [JIRA] (BIT-1533) mysql analyzer does not set service to mysql

2016-02-04 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1533: - Summary: mysql analyzer does not set service to mysql Key: BIT-1533 URL: https://bro-tracker.atlassian.net/browse/BIT-1533 Project: Bro Issue Tracker Issue Type:

[Bro-Dev] [JIRA] (BIT-1516) openbsd build issues

2016-01-22 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1516?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff reassigned BIT-1516: - Assignee: Justin Azoff > openbsd build issues > > > Key:

[Bro-Dev] [JIRA] (BIT-1510) Crash reports when no crash happened

2016-01-21 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1510?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23914#comment-23914 ] Justin Azoff commented on BIT-1510: --- Hmm.. Often the cause of that is the OOM killer.. so potentially a note

[Bro-Dev] [JIRA] (BIT-1486) Bro crashes when trying to Start

2016-01-21 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1486?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23915#comment-23915 ] Justin Azoff commented on BIT-1486: --- BIT-1515 (The Interface setup plugin) should fix this issue. It's not

[Bro-Dev] [JIRA] (BIT-1528) SNMP and SIP scans show up in known services.

2016-01-21 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1528: - Summary: SNMP and SIP scans show up in known services. Key: BIT-1528 URL: https://bro-tracker.atlassian.net/browse/BIT-1528 Project: Bro Issue Tracker Issue Type:

[Bro-Dev] [JIRA] (BIT-1490) Need ability to expire logs with more granularity than #days.

2016-01-20 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1490?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23909#comment-23909 ] Justin Azoff commented on BIT-1490: --- This change looks good but I have one suggestion. I could see someone

[Bro-Dev] [JIRA] (BIT-1490) Need ability to expire logs with more granularity than #days.

2016-01-19 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1490?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23907#comment-23907 ] Justin Azoff commented on BIT-1490: --- Will do. > Need ability to expire logs with more granularity than

[Bro-Dev] [JIRA] (BIT-1515) Interface setup plug-in

2016-01-15 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1515?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23831#comment-23831 ] Justin Azoff commented on BIT-1515: --- Doug Burks commented on the interface setup gist: Hi Justin,

[Bro-Dev] [JIRA] (BIT-1521) known services should probably ignore gridftp-data

2016-01-14 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1521?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23824#comment-23824 ] Justin Azoff edited comment on BIT-1521 at 1/14/16 10:17 AM: - Gah. It looks like

[Bro-Dev] [JIRA] (BIT-1521) known services should probably ignore gridftp-data

2016-01-14 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1521?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23826#comment-23826 ] Justin Azoff commented on BIT-1521: --- Ah, yes that helped the protocol detection.. though I think it shows a

[Bro-Dev] [JIRA] (BIT-1521) known services should probably ignore gridftp-data

2016-01-14 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1521?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23822#comment-23822 ] Justin Azoff commented on BIT-1521: --- Hmm.. it seems a little odd to put the intersects function in the

[Bro-Dev] [JIRA] (BIT-1521) known services should probably ignore gridftp-data

2016-01-14 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1521?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23824#comment-23824 ] Justin Azoff commented on BIT-1521: --- Gah. It looks like coming up with a test case for this will be a pain.

[Bro-Dev] [JIRA] (BIT-1521) known services should probably ignore gridftp-data

2016-01-13 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1521?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23819#comment-23819 ] Justin Azoff edited comment on BIT-1521 at 1/13/16 9:00 AM: Hmm, this may be a

[Bro-Dev] [JIRA] (BIT-1521) known services should probably ignore gridftp-data

2016-01-13 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1521?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23819#comment-23819 ] Justin Azoff edited comment on BIT-1521 at 1/13/16 8:59 AM: Hmm, this may be a

[Bro-Dev] [JIRA] (BIT-1521) known services should probably ignore gridftp-data

2016-01-13 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1521?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23819#comment-23819 ] Justin Azoff edited comment on BIT-1521 at 1/13/16 8:59 AM: Hmm, this may be a

[Bro-Dev] [JIRA] (BIT-1515) Interface setup plug-in

2016-01-12 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1515?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23813#comment-23813 ] Justin Azoff commented on BIT-1515: --- Hmm, some research may be needed to learn what exactly all of those

[Bro-Dev] [JIRA] (BIT-1515) Interface setup plug-in

2016-01-11 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1515?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23800#comment-23800 ] Justin Azoff commented on BIT-1515: --- https://gist.github.com/JustinAzoff/4cfe3995013225d1d119 Need to update

[Bro-Dev] [JIRA] (BIT-1515) Interface setup plug-in

2016-01-11 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1515?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23803#comment-23803 ] Justin Azoff commented on BIT-1515: --- Yeah.. What do you think of the functionality in general though? Should

[Bro-Dev] [JIRA] (BIT-1516) openbsd build issues

2016-01-10 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1516?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23706#comment-23706 ] Justin Azoff commented on BIT-1516: --- Yeah, the problem is that installing libbind doesn't work because cmake

[Bro-Dev] [JIRA] (BIT-1516) openbsd build issues

2015-12-29 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1516: - Summary: openbsd build issues Key: BIT-1516 URL: https://bro-tracker.atlassian.net/browse/BIT-1516 Project: Bro Issue Tracker Issue Type: Problem

[Bro-Dev] [JIRA] (BIT-1516) openbsd build issues

2015-12-29 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1516?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1516: -- Attachment: openbsd_diag.log.gz > openbsd build issues > > > Key:

[Bro-Dev] [JIRA] (BIT-1516) openbsd build issues

2015-12-29 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1516?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23503#comment-23503 ] Justin Azoff commented on BIT-1516: --- Trying to get the test suite to run: {code} sudo ln -s

[Bro-Dev] [JIRA] (BIT-1516) openbsd build issues

2015-12-29 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1516?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23504#comment-23504 ] Justin Azoff commented on BIT-1516: --- {code} [ 2%] bifs.enable_raw_output ... failed [ 7%] bifs.piped_exec

[Bro-Dev] [JIRA] (BIT-1489) topic/dnthayer/ticket1396

2015-12-11 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1489?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23305#comment-23305 ] Justin Azoff commented on BIT-1489: --- Ah, nevermind then :-) > topic/dnthayer/ticket1396 >

[Bro-Dev] [JIRA] (BIT-1489) topic/dnthayer/ticket1396

2015-12-11 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1489?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23303#comment-23303 ] Justin Azoff commented on BIT-1489: --- I had one more thought.. where broctl now does: {code} +Unable to

[Bro-Dev] [JIRA] (BIT-1489) topic/dnthayer/ticket1396

2015-12-11 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1489?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1489: -- Resolution: Merged (was: Fixed) Status: Closed (was: Merge Request) >

[Bro-Dev] [JIRA] (BIT-1489) topic/dnthayer/ticket1396

2015-12-10 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1489?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23302#comment-23302 ] Justin Azoff commented on BIT-1489: --- Sounds good. I'll give the code another read through tomorrow and get it

[Bro-Dev] [JIRA] (BIT-1511) BroControl unable to recognize ifconfig output in some locales

2015-12-08 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1511?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1511: -- Resolution: Merged (was: Fixed) Status: Closed (was: Merge Request) > BroControl unable to

[Bro-Dev] [JIRA] (BIT-1489) topic/dnthayer/ticket1396

2015-12-08 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1489?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23200#comment-23200 ] Justin Azoff commented on BIT-1489: --- This looks pretty good, though it's a bit large. One thing I do notice,

[Bro-Dev] [JIRA] (BIT-1489) topic/dnthayer/ticket1396

2015-12-08 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1489?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=23200#comment-23200 ] Justin Azoff edited comment on BIT-1489 at 12/8/15 2:20 PM: This looks pretty good,

[Bro-Dev] [JIRA] (BIT-1512) make package installs broken broccoli bindings

2015-11-17 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1512: - Summary: make package installs broken broccoli bindings Key: BIT-1512 URL: https://bro-tracker.atlassian.net/browse/BIT-1512 Project: Bro Issue Tracker Issue

[Bro-Dev] [JIRA] (BIT-1512) make package installs broken broccoli bindings

2015-11-17 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1512?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=22902#comment-22902 ] Justin Azoff commented on BIT-1512: --- Gah, yeah, it's the same issue. > make package installs broken broccoli

[Bro-Dev] [JIRA] (BIT-1465) heap overflow in GetTimeFromAsn1

2015-08-22 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1465?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=21716#comment-21716 ] Justin Azoff commented on BIT-1465: --- If anyone is wondering, the workaround to get bro to

[Bro-Dev] [JIRA] (BIT-1462) heap overflow in ARP_Analyzer::IsARP

2015-08-20 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1462: - Summary: heap overflow in ARP_Analyzer::IsARP Key: BIT-1462 URL: https://bro-tracker.atlassian.net/browse/BIT-1462 Project: Bro Issue Tracker Issue Type: Problem

[Bro-Dev] [JIRA] (BIT-1463) heap overflow in PktSrc::Process

2015-08-20 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1463: - Summary: heap overflow in PktSrc::Process Key: BIT-1463 URL: https://bro-tracker.atlassian.net/browse/BIT-1463 Project: Bro Issue Tracker Issue Type: Problem

[Bro-Dev] [JIRA] (BIT-1465) heap overflow in GetTimeFromAsn1

2015-08-20 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1465: - Summary: heap overflow in GetTimeFromAsn1 Key: BIT-1465 URL: https://bro-tracker.atlassian.net/browse/BIT-1465 Project: Bro Issue Tracker Issue Type: Problem

[Bro-Dev] [JIRA] (BIT-1443) pcap files with screwy timestamps hang bro

2015-08-04 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1443: - Summary: pcap files with screwy timestamps hang bro Key: BIT-1443 URL: https://bro-tracker.atlassian.net/browse/BIT-1443 Project: Bro Issue Tracker Issue Type:

[Bro-Dev] [JIRA] (BIT-1441) Logrotation cannot be set when using path_func

2015-08-04 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1441?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1441: -- Attachment: path_func_bug.bro Logrotation cannot be set when using path_func

[Bro-Dev] [JIRA] (BIT-1441) Logrotation cannot be set when using path_func

2015-08-04 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1441?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=21500#comment-21500 ] Justin Azoff commented on BIT-1441: --- files on try.bro.org eventually expire, so I uploaded it

[Bro-Dev] [JIRA] (BIT-1432) BroControl config reloading

2015-07-27 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1432?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1432: -- Resolution: Merged (was: Fixed) Status: Closed (was: Merge Request) BroControl config

[Bro-Dev] [JIRA] (BIT-1431) Loss of information due to analyzer capitalization changes

2015-07-27 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1431?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=21409#comment-21409 ] Justin Azoff commented on BIT-1431: --- Here's another simple use-case (that I remember from an

[Bro-Dev] [JIRA] (BIT-1437) broctl doesn't handle a missing broctl-config.sh well

2015-07-20 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1437: - Summary: broctl doesn't handle a missing broctl-config.sh well Key: BIT-1437 URL: https://bro-tracker.atlassian.net/browse/BIT-1437 Project: Bro Issue Tracker

[Bro-Dev] [JIRA] (BIT-1437) broctl doesn't handle a missing broctl-config.sh well

2015-07-20 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1437?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff reassigned BIT-1437: - Assignee: Daniel Thayer I think I fixed this in topic/jazoff/ticket1437, can you take a look?

[Bro-Dev] [JIRA] (BIT-1436) Put back the --help option to bro-cut

2015-07-20 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1436?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff reassigned BIT-1436: - Assignee: Daniel Thayer Put back the --help option to bro-cut

[Bro-Dev] [JIRA] (BIT-1436) Put back the --help option to bro-cut

2015-07-16 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1436?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=21301#comment-21301 ] Justin Azoff commented on BIT-1436: --- bro-cut needs to use getopt_long to add support for

[Bro-Dev] [JIRA] (BIT-1436) Put back the --help option to bro-cut

2015-07-16 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1436?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=21302#comment-21302 ] Justin Azoff commented on BIT-1436: --- I pushed an initial fix for this to

[Bro-Dev] [JIRA] (BIT-1395) Elasticsearch plugin README outdated

2015-05-12 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1395: - Summary: Elasticsearch plugin README outdated Key: BIT-1395 URL: https://bro-tracker.atlassian.net/browse/BIT-1395 Project: Bro Issue Tracker Issue Type: Problem

[Bro-Dev] [JIRA] (BIT-1381) topic/dnthayer/cleanup-for-2.4

2015-04-21 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1381?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1381: -- Resolution: Merged (was: Fixed) Status: Closed (was: Merge Request) Merged. And I think I

[Bro-Dev] [JIRA] (BIT-1376) method to reproduce internal error: unknown msg type 115 in Poll()

2015-04-18 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1376?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=20321#comment-20321 ] Justin Azoff commented on BIT-1376: --- I deployed the patch to our dev cluster a few days ago.

[Bro-Dev] [JIRA] (BIT-1365) direction field of SSH::Info no longer populated

2015-04-18 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1365?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=20322#comment-20322 ] Justin Azoff commented on BIT-1365: --- Any reason why local-local couldn't be set to INTERNAL?

[Bro-Dev] [JIRA] (BIT-1324) default_path_func does weird things to underscores

2015-03-04 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1324?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=19913#comment-19913 ] Justin Azoff commented on BIT-1324: --- Ran into the issue using

[Bro-Dev] [JIRA] (BIT-1301) Log::add_filter should have a transform func

2014-12-18 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1301: - Summary: Log::add_filter should have a transform func Key: BIT-1301 URL: https://bro-tracker.atlassian.net/browse/BIT-1301 Project: Bro Issue Tracker Issue Type:

[Bro-Dev] [JIRA] (BIT-1227) netstats should compute statistics

2014-08-07 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1227: - Summary: netstats should compute statistics Key: BIT-1227 URL: https://bro-tracker.atlassian.net/browse/BIT-1227 Project: Bro Issue Tracker Issue Type: New

[Bro-Dev] [JIRA] (BIT-1230) Input::REREAD should retry after errors

2014-08-07 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1230: - Summary: Input::REREAD should retry after errors Key: BIT-1230 URL: https://bro-tracker.atlassian.net/browse/BIT-1230 Project: Bro Issue Tracker Issue Type:

[Bro-Dev] [JIRA] (BIT-1227) netstats should compute statistics

2014-08-07 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1227?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=17405#comment-17405 ] Justin Azoff commented on BIT-1227: --- That does sound like it makes more sense. I'm not sure

[Bro-Dev] [JIRA] (BIT-1180) Input framework subsiquient REREAD fails after file update

2014-08-07 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1180?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=17408#comment-17408 ] Justin Azoff commented on BIT-1180: --- One potential cause of this issue is not atomically

[Bro-Dev] [JIRA] (BIT-1215) bro-cut should be rewritten in C for speed and to not depend on gawk

2014-07-10 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1215?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=17107#comment-17107 ] Justin Azoff commented on BIT-1215: --- I think start with 1M and realloc 2x as needed is the

[Bro-Dev] [JIRA] (BIT-1192) record initialization weirdness

2014-05-19 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1192: - Summary: record initialization weirdness Key: BIT-1192 URL: https://bro-tracker.atlassian.net/browse/BIT-1192 Project: Bro Issue Tracker Issue Type: Problem

[Bro-Dev] [JIRA] (BIT-1192) record initialization weirdness

2014-05-19 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1192?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=16601#comment-16601 ] Justin Azoff edited comment on BIT-1192 at 5/19/14 2:01 PM: Oh,

[Bro-Dev] [JIRA] (BIT-1192) record initialization weirdness

2014-05-19 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1192?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=16601#comment-16601 ] Justin Azoff commented on BIT-1192: --- Oh, yes, I know it's wrong. I was helping someone on IRC

[Bro-Dev] [JIRA] (BIT-1157) optional fields are missing from JSON logs

2014-03-14 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1157?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=15731#comment-15731 ] Justin Azoff commented on BIT-1157: --- For example, a DNS log entry that does not have an

[Bro-Dev] [JIRA] (BIT-1159) count/port comparisons silently fail when part of a record

2014-03-14 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1159: - Summary: count/port comparisons silently fail when part of a record Key: BIT-1159 URL: https://bro-tracker.atlassian.net/browse/BIT-1159 Project: Bro Issue Tracker

[Bro-Dev] [JIRA] (BIT-1144) topk_get_top returned data type

2014-02-21 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1144?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=15574#comment-15574 ] Justin Azoff commented on BIT-1144: --- The following works: {code} event bro_init() {

[Bro-Dev] [JIRA] (BIT-1117) Broctl base commucation port should be configurable

2014-01-16 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1117?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=15205#comment-15205 ] Justin Azoff commented on BIT-1117: --- Currently this is hardcoded to 47759 and it can't be

[Bro-Dev] [JIRA] (BIT-1114) topic/jazoff/ssl-validation-fix

2014-01-15 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1114?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1114: -- Status: Merge Request (was: Open) topic/jazoff/ssl-validation-fix ---

[Bro-Dev] [JIRA] (BIT-1115) topic/jazoff/suppression

2014-01-15 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1115: - Summary: topic/jazoff/suppression Key: BIT-1115 URL: https://bro-tracker.atlassian.net/browse/BIT-1115 Project: Bro Issue Tracker Issue Type: Patch

[Bro-Dev] [JIRA] (BIT-1113) topic/jazoff/notice_file_info

2014-01-15 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1113: - Summary: topic/jazoff/notice_file_info Key: BIT-1113 URL: https://bro-tracker.atlassian.net/browse/BIT-1113 Project: Bro Issue Tracker Issue Type: Patch

[Bro-Dev] [JIRA] (BIT-1114) topic/jazoff/ssl-validation-fix

2014-01-15 Thread Justin Azoff (JIRA)
Justin Azoff created BIT-1114: - Summary: topic/jazoff/ssl-validation-fix Key: BIT-1114 URL: https://bro-tracker.atlassian.net/browse/BIT-1114 Project: Bro Issue Tracker Issue Type: Patch

[Bro-Dev] [JIRA] (BIT-1115) topic/jazoff/suppression

2014-01-15 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1115?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1115: -- Status: Merge Request (was: Open) topic/jazoff/suppression

[Bro-Dev] [JIRA] (BIT-1113) topic/jazoff/notice_file_info

2014-01-15 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1113?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Justin Azoff updated BIT-1113: -- Status: Merge Request (was: Open) topic/jazoff/notice_file_info -

[Bro-Dev] [JIRA] (BIT-1114) topic/jazoff/ssl-validation-fix

2014-01-15 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1114?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=15202#comment-15202 ] Justin Azoff commented on BIT-1114: --- This branch contains a single commit that fixes the use

[Bro-Dev] [JIRA] (BIT-1115) topic/jazoff/suppression

2014-01-15 Thread Justin Azoff (JIRA)
[ https://bro-tracker.atlassian.net/browse/BIT-1115?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=15203#comment-15203 ] Justin Azoff commented on BIT-1115: --- Instead of storing the entire notice in