This repository has been archived by the owner on Feb 20, 2022. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathconfig.php
executable file
·125 lines (111 loc) · 5.89 KB
/
config.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
<?php
/**
* This file contains all of the user configuration settings for the program.
* Each type of log file has it's on configuration setting.
* Column should be entered starting from 0 on the left and moving right.
*/
define('DB_NAME', 'test');
/** MySQL database username */
define('DB_USER', 'root');
/** MySQL database password */
define('DB_PASSWORD', 'password');
/** MySQL hostname */
define('DB_HOST', 'localhost');
/** Database Charset to use in creating database tables. */
define('DB_CHARSET', 'utf8');
/** The Database Collate type. Don't change this if in doubt. */
define('DB_COLLATE', '');
// ** This section contains all conifguration settings for bro conn logs ** //
define("CONN_LOG_INSERT", "INSERT INTO bro_conn (CONN_TS, CONN_UID, CONN_ORIGH, CONN_ORIGP, CONN_RESPH, CONN_RESPP, CONN_PROTO, CONN_SERVICE, CONN_DURATION, CONN_ORIGBYTES, CONN_RESPBYTES, CONN_CONNSTATE, CONN_HISTORY, CONN_ORIGPKTS, CONN_ORIGIPBYTES, CONN_RESPPKTS, CONN_RESPIPBYTES) VALUES "); //Holds the overall SQL insert statement
define('CONN_TS', 0); //Timestamp
define('CONN_UID', 1); //UID
define('CONN_ORIGH', 2); //Originating Host
define('CONN_ORIGP', 3); //Originatin Port
define('CONN_RESPH', 4); //Responding Host
define('CONN_RESPP', 5); //Responding Port
define('CONN_PROTO', 6); //Protocol
define('CONN_SERVICE', 7); //Service
define('CONN_DURATION', 8); //Duration
define('CONN_ORIGBYTES', 9); //Originating Bytes
define('CONN_RESPBYTES', 10); //Responding Bytes
define('CONN_CONNSTATE', 11); //Connection State
define('CONN_HISTORY', 15); //History
define('CONN_ORIGPKTS', 16); //Originating Packets
define('CONN_ORIGIPBYTES', 17); //Originating IP Bytes
define('CONN_RESPPKTS', 18); //Responding Packets
define('CONN_RESPIPBYTES', 19); //Responding IP Bytes
// ** This section contains all conifguration settings for bro HTTP logs ** //
define("HTTP_LOG_INSERT", "INSERT INTO bro_http (HTTP_UID, HTTP_METHOD, HTTP_HOST, HTTP_URI, HTTP_REFERRER, HTTP_USERAGENT, HTTP_REQLEN, HTTP_RESPLEN, HTTP_STATUSCODE) VALUES "); //Holds the overall SQL insert statement
define('HTTP_UID', 1); //UID
define('HTTP_METHOD', 7); //HTTP Request Verb
define('HTTP_HOST', 8); //Value of the Host Header
define('HTTP_URI', 9); //URI
define('HTTP_REFERRER', 10); //Referer header
define('HTTP_USERAGENT', 11); //User Agent String
define('HTTP_REQLEN', 12); //Request Length
define('HTTP_RESPLEN', 13); //Responding Length
define('HTTP_STATUSCODE', 14); //Status Code
// ** This section contains all conifguration settings for bro DNS logs ** //
define("DNS_LOG_INSERT", "INSERT INTO bro_dns (DNS_UID, DNS_TRANSID, DNS_QUERY_SUBDOMAIN, DNS_QUERY_TLD, DNS_CLASSNAME, DNS_TYPENAME, DNS_RESPONSECODENAME, DNS_ANSWERS, DNS_TTL) VALUES "); //Holds the overall SQL insert statement
define('DNS_UID', 1); //UID
define('DNS_TS', 0); //Time Stamp
define('DNS_TRANSID', 7); //Transaction ID
define('DNS_QUERY', 8); //Query
define('DNS_CLASSNAME', 10); //Class Name
define('DNS_TYPENAME', 12); //Type Name
define('DNS_RESPONSECODENAME', 14); //Type Name
define('DNS_ANSWERS', 20); //Query Answers
define('DNS_TTL', 21); //A record TTL
// ** This section contains all conifguration settings for bro DHCP logs ** //
define('DHCP_TS', 0); //Timestamp
define('DHCP_UID', 1); //UID
define('DHCP_ORIGH', 2); //Originating Host
define('DHCP_ORIGP', 3); //Originatin Port
define('DHCP_RESPH', 4); //Responding Host
define('DHCP_RESPP', 5); //Responding Port
define('DHCP_MAC', 6); //MAC
define('DHCP_ASNIP', 7); //Assigned IP
// ** This section contains all conifguration settings for bro files logs ** //
define("FILE_LOG_INSERT", "INSERT INTO bro_file (FILE_FUID, FILE_UID, FILE_SOURCE, FILE_ANALYZERS,FILE_MIME, FILE_FILENAME, FILE_MD5, FILE_SHA1, FILE_SHA256, FILE_EXTRACTED) VALUES "); //Holds the overall SQL insert statement
define('FILE_TS', 0); //Timestamp
define('FILE_FUID', 1); //UID
define('FILE_TXH', 2); //Transmit Host
define('FILE_RXH', 3); //Recieving Host
define('FILE_UID', 4); //Connection UID
define('FILE_SOURCE', 5); //File Source
define('FILE_ANALYZERS', 7); //File Analyzers
define('FILE_MIME', 8); //MIME Type
define('FILE_FILENAME', 9); //Source File Name
define('FILE_MD5', 19); //MD5
define('FILE_SHA1', 20); //SHA1
define('FILE_SHA256', 21); //SHA265
define('FILE_EXTRACTED', 22); //Local File Name if Extracted
// ** This section contains all conifguration settings for bro SSL logs ** //
define("SSL_LOG_INSERT", "INSERT INTO bro_ssl (SSL_UID, SSL_VERSION, SSL_CIPHER, SSL_SERVER, SSL_SUBJECT, SSL_ISSUER) VALUES "); //Holds the overall SQL insert statement
define('SSL_TS', 0); //Timestamp
define('SSL_UID', 1); //UID
define('SSL_ORIGH', 2); //Originating Host
define('SSL_ORIGP', 3); //Originatin Port
define('SSL_RESPH', 4); //Responding Host
define('SSL_RESPP', 5); //Responding Port
define('SSL_VERSION', 6); //SSL Version
define('SSL_CIPHER', 7); //Cipher Suite
define('SSL_SERVER', 9); //Certificate Server Name
define('SSL_CHAIN_FUID', 14); //Certificate Chain File UIDs
define('SSL_SUBJECT', 16); //X.509 Subject
define('SSL_ISSUER', 17); //Certificate Issuer
// ** This section contains all conifguration settings for bro X509 logs ** //
define("X509_LOG_INSERT", "INSERT INTO bro_x509 (X509_FUID, X509_VERSION, X509_SERIAL, X509_SUBJECT, X509_ISSUER, X509_NOTVALIDBEFORE, X509_NOTVALIDAFTER, X509_KEYALG, X509_SIGALG, X509_KEYTYPE, X509_KEYLENGTH) VALUES "); //Holds the overall SQL insert statement
define('X509_TS', 0); //Timestamp
define('X509_FUID', 1); //File UID
define('X509_VERSION', 2); //Version Number
define('X509_SERIAL', 3); //Serial Number
define('X509_SUBJECT', 4); //Subject
define('X509_ISSUER', 5); //Issuer
define('X509_NOTVALIDBEFORE', 6); //Not Valid Before Date
define('X509_NOTVALIDAFTER', 7); //Not Valid After Date
define('X509_KEYALG', 8); //Key Algorithim
define('X509_SIGALG', 9); //Signature Algorithim
define('X509_KEYTYPE', 10); //Key Type
define('X509_KEYLENGTH', 11); //Key Length
?>