diff options
author | Toni Uhlig <matzeton@googlemail.com> | 2024-09-11 13:01:23 +0200 |
---|---|---|
committer | Toni Uhlig <matzeton@googlemail.com> | 2024-09-11 13:01:23 +0200 |
commit | 1c9aa854851c4daf479c988ce8a064ae2accbaab (patch) | |
tree | ec61c08ebeb5ee3e7df512c962f9f3ccc96d25b0 /test/results/flow-info/default/smtp.pcap.out | |
parent | aef9d629f01b66a5e1985f265e9c74fd40542fe1 (diff) |
Save hostname after detection finished for later use within analyse/end/idle flow events. Fixes #39.
Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
Diffstat (limited to 'test/results/flow-info/default/smtp.pcap.out')
-rw-r--r-- | test/results/flow-info/default/smtp.pcap.out | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/test/results/flow-info/default/smtp.pcap.out b/test/results/flow-info/default/smtp.pcap.out index 6ff458601..aa024150b 100644 --- a/test/results/flow-info/default/smtp.pcap.out +++ b/test/results/flow-info/default/smtp.pcap.out @@ -3,7 +3,7 @@ DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0] new: [.....1] [ip4][..tcp] [..194.7.248.153][.2127] -> [.172.16.114.207][...25] detected: [.....1] [ip4][..tcp] [..194.7.248.153][.2127] -> [.172.16.114.207][...25] [SMTP][Unknown][Email][Acceptable][pigeon.eyrie.af.mil] - analyse: [.....1] [ip4][..tcp] [..194.7.248.153][.2127] -> [.172.16.114.207][...25] [SMTP][Unknown][Email][Acceptable] + analyse: [.....1] [ip4][..tcp] [..194.7.248.153][.2127] -> [.172.16.114.207][...25] [SMTP][Unknown][Email][Acceptable][pigeon.eyrie.af.mil] min| max| avg| stddev| variance| entropy [IAT.........: < 0.001| 0.055| 0.006| 0.012| 143.094| 3.200] [PKTLEN......: 46.000| 124.000| 73.600| 15.200| 230.100| 5.000] @@ -13,5 +13,5 @@ [IATS(ms)....: 0.3,1.1,19.7,31.1,24.6,55.1,2.2,21.4,1.1,1.2,1.1,1.2,1.2,1.1,1.1,1.1,1.1,1.1,1.1,1.1,1.1,1.1,1.1,1.1,1.1,1.0,1.0,1.1,1.1,1.1,1.1] [PKTLENS.....: 46,46,46,124,46,62,46,66,62,84,76,83,79,78,79,78,80,79,79,78,79,78,80,79,78,77,77,76,80,79,78,77] [ENTROPIES...: 4.2,5.0,4.4,5.6,4.4,5.4,4.4,5.4,5.4,5.5,5.5,5.5,5.5,5.6,5.5,5.6,5.6,5.6,5.5,5.6,5.5,5.6,5.5,5.5,5.5,5.5,5.5,5.5,5.5,5.6,5.5,5.5] - end: [.....1] [ip4][..tcp] [..194.7.248.153][.2127] -> [.172.16.114.207][...25] [SMTP][Unknown][Email][Acceptable] + end: [.....1] [ip4][..tcp] [..194.7.248.153][.2127] -> [.172.16.114.207][...25] [SMTP][Unknown][Email][Acceptable][pigeon.eyrie.af.mil] DAEMON-EVENT: shutdown |