From feaa1df1ed69123af9c44420a5db1ae096631fa0 Mon Sep 17 00:00:00 2001 From: Ivan Nardi <12729895+IvanNardi@users.noreply.github.com> Date: Thu, 7 Jul 2022 16:45:49 +0200 Subject: Kerberos: add support for Krb-Error messages (#1647) --- tests/pcap/kerberos-error.pcap | Bin 0 -> 537 bytes tests/result/kerberos-error.pcap.out | 8 ++++++++ tests/result/kerberos.pcap.out | 2 +- 3 files changed, 9 insertions(+), 1 deletion(-) create mode 100644 tests/pcap/kerberos-error.pcap create mode 100644 tests/result/kerberos-error.pcap.out (limited to 'tests') diff --git a/tests/pcap/kerberos-error.pcap b/tests/pcap/kerberos-error.pcap new file mode 100644 index 000000000..249e23454 Binary files /dev/null and b/tests/pcap/kerberos-error.pcap differ diff --git a/tests/result/kerberos-error.pcap.out b/tests/result/kerberos-error.pcap.out new file mode 100644 index 000000000..79692fd81 --- /dev/null +++ b/tests/result/kerberos-error.pcap.out @@ -0,0 +1,8 @@ +Guessed flow protos: 0 + +DPI Packets (UDP): 2 (2.00 pkts/flow) +Confidence DPI : 1 (flows) + +Kerberos 2 481 1 + + 1 UDP 148.151.79.183:34473 <-> 144.199.10.233:88 [VLAN: 2008][proto: 111/Kerberos][ClearText][Confidence: DPI][cat: Network/14][1 pkts/333 bytes <-> 1 pkts/148 bytes][Goodput ratio: 86/68][0.36 sec][linux.shell.com\mus-n-cj0709][PLAIN TEXT (LINUX.SHELL.COM)][Plen Bins: 0,0,0,50,0,0,0,0,50,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] diff --git a/tests/result/kerberos.pcap.out b/tests/result/kerberos.pcap.out index 27377c786..af04f6d53 100644 --- a/tests/result/kerberos.pcap.out +++ b/tests/result/kerberos.pcap.out @@ -1,4 +1,4 @@ -Guessed flow protos: 33 +Guessed flow protos: 29 DPI Packets (TCP): 77 (2.14 pkts/flow) Confidence Unknown : 2 (flows) -- cgit v1.2.3