Next: , Previous: icmpbro, Up: Predefined Variables



6.1.19 ident.bro

hot_ident_ids : set[string]
If any of the User IDs in this set are returned in an ident response, an IdentSensitiveID alert is generated.

hot_ident_exceptions : set[string]

Exceptions to the hot_ident_ids set.

public_ident_user_ids : set[string]

User IDs in this set are described as “public” in a rewritten ident trace.

public_ident_systems : set[string]

Operating system names in this set (e.g., “UNIX”) are reported directly in a rewritten ident trace; other OSes will be reported as “OTHER”.

rewrite_ident_trace : bool

If true, traces will be rewritten (partially anonymized).