Re: [Openpacket-devel] New Beta Site Live
Brought to you by:
crazy_j,
taosecurity
|
From: James P. <jp...@gm...> - 2007-10-14 09:14:10
|
I agree that it is up to the poster to anonymize it, but it would be nice for people who submit large volumes of pcaps to not have to go through anonymizing it on their end. When I was uploading a pcap, I was thinking wow... it would be really neat if the website was able to anonymize it for me :) Just kind of a feature, but still would be pretty cool.. A lot of times stuff isn't sensitive, but might be nice to block out IP's... It is late, and I am tired... so this will be the last email for me before I go to bed --James On 10/13/07, Richard Bejtlich <tao...@gm...> wrote: > On 10/13/07, James Pleger <jp...@gm...> wrote: > > Sorry for the feature requests late in the game, but it would be nice to: > > > > - anonymize the pcaps if a button was selected when uploading the pcap > > - create the tshark output automatically > > > > Hi James, > > Thanks for all your feedback. I'll ask Sharri to take a look. > > As far as anonymization, it will be the responsibility of the > submitter to anonymize the traces. The OpenPacket.org moderators will > NOT take that responsibility. If we feel that a trace is not > sufficiently anonymized, we will reject it (i.e., not publish it). > > Creating Tshark output automatically is an idea, but I'm afraid of > submitting a file to be processed by code (Tshark) running at > OpenPacket.org. Given the dissector vulnerabilities in Wireshark, I > don't think it's worth the risk. > > Richard > -- James Pleger p: 623.298.7966 e: jp...@gm... |