Node: Tracefiles, Next: Bro Summary Reports, Previous: Analyzer-specific Files, Up: Bro Output
Bro can be configured to output captured packets that look to be part of suspicious sessions. These files are in tcpdump format.
tcpdump