diff options
Diffstat (limited to 'test/results/flow-info/default/citrix.pcap.out')
-rw-r--r-- | test/results/flow-info/default/citrix.pcap.out | 15 |
1 files changed, 15 insertions, 0 deletions
diff --git a/test/results/flow-info/default/citrix.pcap.out b/test/results/flow-info/default/citrix.pcap.out new file mode 100644 index 000000000..c122ff3b0 --- /dev/null +++ b/test/results/flow-info/default/citrix.pcap.out @@ -0,0 +1,15 @@ + DAEMON-EVENT: init + new: [.....1] [ip4][..tcp] [.......21.0.0.8][45225] -> [.......22.0.0.7][.1494] + detected: [.....1] [ip4][..tcp] [.......21.0.0.8][45225] -> [.......22.0.0.7][.1494] [Citrix][Unknown][Network][Acceptable] + analyse: [.....1] [ip4][..tcp] [.......21.0.0.8][45225] -> [.......22.0.0.7][.1494] [Citrix][Unknown][Network][Acceptable] + min| max| avg| stddev| variance| entropy + [IAT.........: < 0.001| 0.056| 0.005| 0.012| 154.959| 2.600] + [PKTLEN......: 50.000| 387.000| 100.300| 63.600| 4041.600| 4.800] + [BINS(c->s)..: 5,18,1,0,1,1,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] + [BINS(s->c)..: 4,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] + [DIRECTIONS..: 0,1,0,1,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,1,0] + [IATS(ms)....: 2.1,2.1,6.1,6.1,4.1,7.1,1.0,0.0,0.0,0.0,0.0,1.0,1.0,0.0,0.0,0.0,0.0,1.0,0.0,0.0,2.0,0.0,0.0,0.0,0.0,1.0,0.0,56.3,46.1,4.1,4.1] + [PKTLENS.....: 50,50,50,50,50,62,198,107,87,88,91,387,83,211,95,133,103,97,95,103,98,83,83,83,100,103,97,95,128,50,50,50] + [ENTROPIES...: 4.1,4.5,4.0,4.6,4.5,4.2,5.2,4.6,4.8,4.8,4.3,4.8,4.5,3.3,4.1,4.2,4.1,4.4,4.1,4.2,4.3,4.5,4.4,4.4,4.2,4.1,4.2,4.3,4.0,4.2,4.3,4.3] + idle: [.....1] [ip4][..tcp] [.......21.0.0.8][45225] -> [.......22.0.0.7][.1494] [Citrix][Unknown][Network][Acceptable] + DAEMON-EVENT: shutdown |