diff options
Diffstat (limited to 'tests/result/tls_alert.pcap.out')
-rw-r--r-- | tests/result/tls_alert.pcap.out | 8 |
1 files changed, 5 insertions, 3 deletions
diff --git a/tests/result/tls_alert.pcap.out b/tests/result/tls_alert.pcap.out index 7577eecfb..6cbec045f 100644 --- a/tests/result/tls_alert.pcap.out +++ b/tests/result/tls_alert.pcap.out @@ -1,8 +1,9 @@ -Guessed flow protos: 1 +Guessed flow protos: 2 -DPI Packets (TCP): 11 (11.00 pkts/flow) -Confidence DPI : 1 (flows) +DPI Packets (TCP): 18 (9.00 pkts/flow) +Confidence DPI : 2 (flows) +TLS 7 533 1 Google 11 952 1 JA3 Host Stats: @@ -11,3 +12,4 @@ JA3 Host Stats: 1 TCP 192.168.1.192:63158 <-> 192.168.1.20:443 [proto: 91.126/TLS.Google][Encrypted][Confidence: DPI][cat: Advertisement/101][6 pkts/607 bytes <-> 5 pkts/345 bytes][Goodput ratio: 33/2][0.00 sec][Hostname/SNI: www.google-analytics.com][ALPN: h2;h2-16;h2-15;h2-14;spdy/3.1;spdy/3;http/1.1][bytes ratio: 0.275 (Upload)][IAT c2s/s2c min/avg/max/stddev: 0/0 0/0 0/0 0/0][Pkt Len c2s/s2c min/avg/max/stddev: 66/66 101/69 265/74 73/4][Risk: ** Obsolete TLS (v1.1 or older) **** TLS Fatal Alert **][Risk Score: 110][TLSv1][JA3C: d78489b860c8bf7838a6ff0b4d131541][Plen Bins: 50,0,0,0,0,0,50,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] + 2 TCP 192.168.2.100:37780 -> 160.44.202.202:443 [proto: 91/TLS][Encrypted][Confidence: DPI][cat: Web/5][7 pkts/533 bytes -> 0 pkts/0 bytes][Goodput ratio: 29/0][3.67 sec][bytes ratio: 1.000 (Upload)][IAT c2s/s2c min/avg/max/stddev: 3/0 612/0 1878/0 656/0][Pkt Len c2s/s2c min/avg/max/stddev: 54/0 76/0 85/0 14/0][Plen Bins: 100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] |