Project

General

Profile

Actions

Feature #5413

open

DCERPC logging is not easy to use in analysis

Added by Eric Leblond 3 months ago.

Status:
In Progress
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

The dcerpc part of smb events have the dcerpc uudi in one event and the opnum in another event. This is not convenient as a full understanding of the dcerpc request needs to be build upon 2 events.


Related issues 1 (1 open0 closed)

Related to Feature #4175: dcerpc: higher level loggingNewCommunity TicketActions
Actions #1

Updated by Victor Julien 3 months ago

Actions

Also available in: Atom PDF