[Snort-devel] Add CAN protocol to Snort

Bill Parker wp02855 at ...2499...
Wed Jul 15 12:47:58 EDT 2015


Hi All,

    Here is something I found while doing some google searches:

https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=6651

Which is a working CAN dissector for wireshark, could this be adapted to
use in Snort 3/++?  I'm attaching a pcap for canopen for examination.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-devel/attachments/20150715/b38ebf19/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: canopen_whole.pcap
Type: application/octet-stream
Size: 22128 bytes
Desc: not available
URL: <https://lists.snort.org/pipermail/snort-devel/attachments/20150715/b38ebf19/attachment.obj>


More information about the Snort-devel mailing list