Next: , Previous: Specifying policy scripts, Up: Running Bro



2.1.4 Running Bro on network traffic

There are two ways to run Bro on network traffic: on traffic captured live by the network interface(s), and on traffic previously recorded using the -w flag of tcpdump or Bro itself.