summaryrefslogtreecommitdiff
path: root/test/results/flow-info/default/imap-starttls.pcap.out
diff options
context:
space:
mode:
Diffstat (limited to 'test/results/flow-info/default/imap-starttls.pcap.out')
-rw-r--r--test/results/flow-info/default/imap-starttls.pcap.out25
1 files changed, 25 insertions, 0 deletions
diff --git a/test/results/flow-info/default/imap-starttls.pcap.out b/test/results/flow-info/default/imap-starttls.pcap.out
new file mode 100644
index 000000000..bd2068a73
--- /dev/null
+++ b/test/results/flow-info/default/imap-starttls.pcap.out
@@ -0,0 +1,25 @@
+ DAEMON-EVENT: init
+ DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0]
+ DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0]
+ new: [.....1] [ip4][..tcp] [..192.168.17.53][49640] -> [.212.227.17.186][..143]
+ detected: [.....1] [ip4][..tcp] [..192.168.17.53][49640] -> [.212.227.17.186][..143] [IMAPS][Unknown][Email][Safe]
+ RISK: Known Proto on Non Std Port
+ detection-update: [.....1] [ip4][..tcp] [..192.168.17.53][49640] -> [.212.227.17.186][..143] [IMAPS][Unknown][Email][Safe]
+ RISK: Known Proto on Non Std Port, TLS (probably) Not Carrying HTTPS, Missing SNI TLS Extn
+ detection-update: [.....1] [ip4][..tcp] [..192.168.17.53][49640] -> [.212.227.17.186][..143] [IMAPS][Unknown][Email][Safe]
+ RISK: Known Proto on Non Std Port, TLS (probably) Not Carrying HTTPS, Missing SNI TLS Extn
+ detection-update: [.....1] [ip4][..tcp] [..192.168.17.53][49640] -> [.212.227.17.186][..143] [IMAPS][Unknown][Email][Safe]
+ RISK: Known Proto on Non Std Port, TLS (probably) Not Carrying HTTPS, Missing SNI TLS Extn
+ analyse: [.....1] [ip4][..tcp] [..192.168.17.53][49640] -> [.212.227.17.186][..143] [IMAPS][Unknown][Email][Safe]
+ min| max| avg| stddev| variance| entropy
+ [IAT.........: < 0.001| 1.678| 0.188| 0.378| 143010.873| 3.300]
+ [PKTLEN......: 40.000| 1500.000| 235.200| 424.600| 180326.200| 3.600]
+ [BINS(c->s)..: 15,1,0,1,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
+ [BINS(s->c)..: 5,2,1,0,0,0,0,1,1,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,3,0,0]
+ [DIRECTIONS..: 0,1,0,1,0,0,1,1,0,0,1,1,0,0,1,1,0,1,1,0,0,0,1,0,0,1,1,0,0,0,0,1]
+ [IATS(ms)....: 189.8,189.9,188.3,188.3,0.1,192.5,0.3,192.6,0.2,186.5,0.0,186.4,0.4,197.4,0.2,197.1,2.0,0.2,2.2,0.1,3.7,191.6,187.9,1487.0,1677.8,0.2,190.8,0.0,0.3,0.0,189.4]
+ [PKTLENS.....: 64,52,40,311,40,54,46,267,40,52,72,46,40,358,1500,1500,40,1500,622,40,40,166,91,40,79,119,71,40,40,71,40,46]
+ [ENTROPIES...: 4.6,4.7,4.5,5.4,4.7,5.1,4.5,5.2,4.7,5.0,5.3,4.5,4.8,5.4,6.9,7.2,4.7,7.1,7.7,4.4,4.7,6.5,5.5,4.7,5.7,6.1,5.1,4.7,4.7,5.5,4.5,3.9]
+ end: [.....1] [ip4][..tcp] [..192.168.17.53][49640] -> [.212.227.17.186][..143] [IMAPS][Unknown][Email][Safe]
+ RISK: Known Proto on Non Std Port, TLS (probably) Not Carrying HTTPS, Missing SNI TLS Extn
+ DAEMON-EVENT: shutdown