Zeek Package Documentation: Bad Neighbor Detection

Package README

The top-level README has information on how to install and test this Zeek Package.

Zeek Package

For Zeek scripting details, such as options, functions and events, see the auto-generated documentation:

__load__.zeek

This is the entrypoint to loading the entire package.

main.zeek

Detects “Bad Neighbor”. CVE-2020-16898 and CVE-2020-16899

consts.zeek

Defines constants used by the script. In a separate file by tradition.

local/__load__.zeek

Site-specific customizations go here