From df42ad0771578c9120a410791e4b7292a5f468ed Mon Sep 17 00:00:00 2001 From: Toni Uhlig Date: Fri, 5 Apr 2024 11:15:25 +0200 Subject: Calculate packet entropy for unknown protocols. Signed-off-by: Toni Uhlig --- tests/cfgs/default/result/kontiki.pcap.out | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'tests/cfgs/default/result/kontiki.pcap.out') diff --git a/tests/cfgs/default/result/kontiki.pcap.out b/tests/cfgs/default/result/kontiki.pcap.out index ef400fd57..339da06a0 100644 --- a/tests/cfgs/default/result/kontiki.pcap.out +++ b/tests/cfgs/default/result/kontiki.pcap.out @@ -41,4 +41,4 @@ Unrated 4 1696 2 Undetected flows: 1 UDP 10.25.32.59:19948 -> 255.255.255.255:19948 [proto: 0/Unknown][IP: 0/Unknown][ClearText][Confidence: Unknown][DPI packets: 1][1 pkts/1033 bytes -> 0 pkts/0 bytes][Goodput ratio: 96/0][< 1 sec][PLAIN TEXT (xml version)][Plen Bins: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,100,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] - 2 UDP 10.25.32.59:19948 <-> 64.200.148.82:1948 [proto: 0/Unknown][IP: 0/Unknown][ClearText][Confidence: Unknown][DPI packets: 3][2 pkts/411 bytes <-> 1 pkts/252 bytes][Goodput ratio: 79/83][0.01 sec][Plen Bins: 33,0,0,0,0,0,33,0,0,33,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] + 2 UDP 10.25.32.59:19948 <-> 64.200.148.82:1948 [proto: 0/Unknown][IP: 0/Unknown][ClearText][Confidence: Unknown][DPI packets: 3][2 pkts/411 bytes <-> 1 pkts/252 bytes][Goodput ratio: 79/83][0.01 sec][Risk: ** Susp Entropy **][Risk Score: 50][Risk Info: Entropy 7.32][Plen Bins: 33,0,0,0,0,0,33,0,0,33,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] -- cgit v1.2.3