Merge pull request #8973 from lock-wire/patch-3

Add Modbus, DNP3, BZAR, and oui-logging
This commit is contained in:
Peter Di Giorgio
2022-10-21 18:06:13 -07:00
committed by GitHub
2 changed files with 10 additions and 1 deletions

View File

@@ -48,6 +48,11 @@ zeek:
- securityonion/bpfconf
- securityonion/communityid
- securityonion/file-extraction
- oui-logging
- bzar
- icsnpp-dnp3
- icsnpp-modbus
-
'@load-sigs':
- frameworks/signatures/detect-windows-shells
redef:

View File

@@ -3013,6 +3013,10 @@ zeek_logs_enabled() {
" - weird"\
" - mysql"\
" - socks"\
" - x509" >> "$zeeklogs_pillar"
" - x509" \
" - dnp3_objects" \
" - modbus_detailed" \
" - modbus_mask_write_single_register" \
" - modbus_read_write_multiple_registers" >> "$zeeklogs_pillar"
fi
}