Documentation ¶
Index ¶
Constants ¶
This section is empty.
Variables ¶
View Source
var Brimcap = &charm.Spec{ Name: "brimcap", Usage: "brimcap [global options] command [options] [arguments...]", Short: "search, analyze and inspect pcap files", Long: ` The Brimcap command provides utilties for searching, analyzing, and inspecting pcap files. Most users will be interested in the brimcap analyze command, which will read a pcap stream or file into multiple pcap analyzer processes (defaults to Zeek and Suricata) and emits the generated logs from these processes. Brimcap is built on top of the flexible Zed system (https://github.com/brimdata/zed), so the logs can be written into a variety of structured log formats. Logs written as ZNG or ZSON can be searched with zq (https://github.com/brimdata/zed/tree/main/cmd/zed#zq) or loaded into a Zed lake (https://github.com/brimdata/zed/blob/main/docs/lake/README.md) using zapi (https://github.com/brimdata/zed/tree/main/cmd/zed#zapi) for viewing in the Zui desktop app (https://github.com/brimdata/zui). Additionally logs can also be written as ndjson and then operated on using jq (https://stedolan.github.io/jq/). The brimcap index command can be used to index pcap files for flow extraction via the brimcap search command. `, New: New, }
View Source
var LogJSON bool
Functions ¶
Types ¶
Click to show internal directories.
Click to hide internal directories.