grep bro conn.log for ip vlan and mac
authorDobrica Pavlinusic <dpavlin@rot13.org>
Fri, 22 Jun 2018 14:26:05 +0000 (16:26 +0200)
committerDobrica Pavlinusic <dpavlin@rot13.org>
Fri, 22 Jun 2018 14:26:05 +0000 (16:26 +0200)
bro-conn-ip-vlan-mac.sh [new file with mode: 0755]

diff --git a/bro-conn-ip-vlan-mac.sh b/bro-conn-ip-vlan-mac.sh
new file mode 100755 (executable)
index 0000000..304a4a9
--- /dev/null
@@ -0,0 +1,4 @@
+#!/bin/sh -ex
+
+ssh enesej "cat /var/log/bro/current/conn.log | bro-cut -d id.orig_h vlan orig_l2_addr -F' ' | grep '^$1 ' | head -1"
+