diff options
author | Ivan Nardi <12729895+IvanNardi@users.noreply.github.com> | 2022-07-22 12:19:21 +0200 |
---|---|---|
committer | GitHub <noreply@github.com> | 2022-07-22 12:19:21 +0200 |
commit | 52005e88ed9730c605db23573f63ba6a17cd45e5 (patch) | |
tree | b170a3955ccc6cac9d25e4011d6ec49c25133222 /tests/result/tls_missing_ch_frag.pcap.out | |
parent | ce6f11840d1ae7a9f1e1537d004c4814842fa305 (diff) |
TLS: improve reassembler (#1669)
* TLS: cosmetic changes
* TLS: improve reassembler
We might need to contemporary re-order messages from both directions:
use one buffer per direction.
Diffstat (limited to 'tests/result/tls_missing_ch_frag.pcap.out')
-rw-r--r-- | tests/result/tls_missing_ch_frag.pcap.out | 13 |
1 files changed, 13 insertions, 0 deletions
diff --git a/tests/result/tls_missing_ch_frag.pcap.out b/tests/result/tls_missing_ch_frag.pcap.out new file mode 100644 index 000000000..f6d4181e8 --- /dev/null +++ b/tests/result/tls_missing_ch_frag.pcap.out @@ -0,0 +1,13 @@ +Guessed flow protos: 0 + +DPI Packets (TCP): 3 (3.00 pkts/flow) +Confidence DPI : 1 (flows) +Num dissector calls: 125 (125.00 diss/flow) + +TLS 14 10082 1 + +JA3 Host Stats: + IP Address # JA3C + + + 1 TCP 10.10.10.1:443 <-> 192.168.0.1:33063 [proto: 91/TLS][Encrypted][Confidence: DPI][cat: Web/5][6 pkts/6525 bytes <-> 8 pkts/3557 bytes][Goodput ratio: 94/85][0.38 sec][bytes ratio: 0.294 (Upload)][IAT c2s/s2c min/avg/max/stddev: 0/0 40/13 161/59 70/23][Pkt Len c2s/s2c min/avg/max/stddev: 66/66 1088/445 2023/1090 747/434][TLSv1.3][JA3S: 907bf3ecef1c987c889946b737b43de8][Cipher: TLS_AES_256_GCM_SHA384][Plen Bins: 0,0,11,0,0,11,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,11,0,0,0,0,0,0,0,0,0,22,0,0,0,0,0,0,0,0,0,0,33,0,0,0,11] |