fix hide hosts, remove empty values from microtik
[dell-switch] / bro-grep-conn-switch-port.sh
1 #!/bin/sh
2
3 test -z "$1" && echo "Usage: $0 switch port" && exit 1
4
5 ./snmp-mac-port $1
6
7 regex=$( grep " $2\$" /dev/shm/snmp-mac-port/$1 | awk '{ print $3 }' )
8 regex=$( echo $regex | sed -e 's/ /|/g' -e 's/^/(/' -e 's/$/)/' )
9
10 echo "# $regex"
11
12 ssh enesej egrep \"$regex\" /var/log/bro/current/conn.log | tee /dev/shm/bro-conn-$1-$2