diff options
Diffstat (limited to 'test/results/flow-info/default/ipsec_isakmp_esp.pcap.out')
-rw-r--r-- | test/results/flow-info/default/ipsec_isakmp_esp.pcap.out | 72 |
1 files changed, 36 insertions, 36 deletions
diff --git a/test/results/flow-info/default/ipsec_isakmp_esp.pcap.out b/test/results/flow-info/default/ipsec_isakmp_esp.pcap.out index 840e90e5f..eae372270 100644 --- a/test/results/flow-info/default/ipsec_isakmp_esp.pcap.out +++ b/test/results/flow-info/default/ipsec_isakmp_esp.pcap.out @@ -1,9 +1,9 @@ DAEMON-EVENT: init DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0] DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0] - new: [.....1] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] + new: [.....1] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] detected: [.....1] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] - new: [.....2] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] + new: [.....2] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] detected: [.....2] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] update: [.....1] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] update: [.....2] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] @@ -27,7 +27,7 @@ DAEMON-EVENT: [Flows][active: 2 / 2|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 6] idle: [.....2] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] update: [.....1] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] - new: [.....3] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] + new: [.....3] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] detected: [.....3] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] update: [.....1] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] update: [.....3] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] @@ -35,12 +35,12 @@ DAEMON-EVENT: [Flows][active: 2 / 3|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 9] idle: [.....1] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] update: [.....3] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] - new: [.....4] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.195][.4500] + new: [.....4] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.195][.4500] detected: [.....4] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.195][.4500] [IPSec][Unknown][VPN][Safe] update: [.....3] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] - new: [.....5] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] + new: [.....5] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] detected: [.....5] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] - new: [.....6] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.195][..500] + new: [.....6] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.195][..500] detected: [.....6] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.195][..500] [IPSec][Unknown][VPN][Safe] idle: [.....3] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] update: [.....4] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.195][.4500] [IPSec][Unknown][VPN][Safe] @@ -51,9 +51,9 @@ update: [.....6] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.195][..500] [IPSec][Unknown][VPN][Safe] DAEMON-EVENT: [Processed: 145 pkts][ZLib][compressions: 0|diff: 0 / 0] DAEMON-EVENT: [Flows][active: 2 / 6|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 14] - new: [.....7] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.194][..500] + new: [.....7] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.194][..500] detected: [.....7] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.194][..500] [IPSec][Unknown][VPN][Safe] - new: [.....8] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.194][.4500] + new: [.....8] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.194][.4500] detected: [.....8] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.194][.4500] [IPSec][Unknown][VPN][Safe] idle: [.....4] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.195][.4500] [IPSec][Unknown][VPN][Safe] idle: [.....6] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.195][..500] [IPSec][Unknown][VPN][Safe] @@ -65,17 +65,17 @@ update: [.....7] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.194][..500] [IPSec][Unknown][VPN][Safe] DAEMON-EVENT: [Processed: 187 pkts][ZLib][compressions: 0|diff: 0 / 0] DAEMON-EVENT: [Flows][active: 2 / 8|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 18] - new: [.....9] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.225][..500] + new: [.....9] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.225][..500] detected: [.....9] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.225][..500] [IPSec][Unknown][VPN][Safe] - new: [....10] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.225][.4500] + new: [....10] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.225][.4500] detected: [....10] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.225][.4500] [IPSec][Unknown][VPN][Safe] RISK: Malformed Packet idle: [.....8] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.194][.4500] [IPSec][Unknown][VPN][Safe] idle: [.....7] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.194][..500] [IPSec][Unknown][VPN][Safe] - new: [....11] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.131][..500] + new: [....11] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.131][..500] detected: [....11] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.131][..500] [IPSec][Unknown][VPN][Safe] RISK: Malformed Packet - new: [....12] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.131][.4500] + new: [....12] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.131][.4500] detected: [....12] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.131][.4500] [IPSec][Unknown][VPN][Safe] idle: [....10] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.225][.4500] [IPSec][Unknown][VPN][Safe] RISK: Malformed Packet @@ -87,36 +87,36 @@ RISK: Malformed Packet DAEMON-EVENT: [Processed: 244 pkts][ZLib][compressions: 0|diff: 0 / 0] DAEMON-EVENT: [Flows][active: 2 / 12|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 20] - new: [....13] [ip4][..udp] [..192.168.2.100][43811] -> [109.237.187.193][.4500] + new: [....13] [ip4][..udp] [..192.168.2.100][43811] -> [109.237.187.193][.4500] detected: [....13] [ip4][..udp] [..192.168.2.100][43811] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] - new: [....14] [ip4][..udp] [..192.168.2.100][43811] -> [109.237.187.193][..500] + new: [....14] [ip4][..udp] [..192.168.2.100][43811] -> [109.237.187.193][..500] detected: [....14] [ip4][..udp] [..192.168.2.100][43811] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] idle: [....12] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.131][.4500] [IPSec][Unknown][VPN][Safe] idle: [....11] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.131][..500] [IPSec][Unknown][VPN][Safe] RISK: Malformed Packet DAEMON-EVENT: [Processed: 267 pkts][ZLib][compressions: 0|diff: 0 / 0] DAEMON-EVENT: [Flows][active: 2 / 14|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 20] - new: [....15] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.129][..500] + new: [....15] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.129][..500] detected: [....15] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.129][..500] [IPSec][Unknown][VPN][Safe] - new: [....16] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.129][.4500] + new: [....16] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.129][.4500] detected: [....16] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.129][.4500] [IPSec][Unknown][VPN][Safe] idle: [....13] [ip4][..udp] [..192.168.2.100][43811] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] idle: [....14] [ip4][..udp] [..192.168.2.100][43811] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] - new: [....17] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.225][..500] + new: [....17] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.225][..500] detected: [....17] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.225][..500] [IPSec][Unknown][VPN][Safe] - new: [....18] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.225][.4500] + new: [....18] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.225][.4500] detected: [....18] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.225][.4500] [IPSec][Unknown][VPN][Safe] - new: [....19] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.131][..500] + new: [....19] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.131][..500] detected: [....19] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.131][..500] [IPSec][Unknown][VPN][Safe] - new: [....20] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.131][.4500] + new: [....20] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.131][.4500] detected: [....20] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.131][.4500] [IPSec][Unknown][VPN][Safe] - new: [....21] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] + new: [....21] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] detected: [....21] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] - new: [....22] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] + new: [....22] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] detected: [....22] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] - new: [....23] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.227][..500] + new: [....23] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.227][..500] detected: [....23] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.227][..500] [IPSec][Unknown][VPN][Safe] - new: [....24] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.227][.4500] + new: [....24] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.227][.4500] detected: [....24] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.227][.4500] [IPSec][Unknown][VPN][Safe] analyse: [....24] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.227][.4500] [IPSec][Unknown][VPN][Safe] min| max| avg| stddev| variance| entropy @@ -138,13 +138,13 @@ [IATS(ms)....: 0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0] [PKTLENS.....: 804,80,828,316,804,80,828,316,804,80,828,316,804,80,828,316,804,80,828,316,804,80,828,316,804,80,828,316,804,80,828,316] [ENTROPIES...: 4.9,4.6,5.0,6.6,5.0,4.6,5.0,6.6,4.9,4.6,5.0,6.4,4.9,4.6,5.0,6.6,4.9,4.6,5.0,6.5,4.9,4.6,5.0,6.6,4.9,4.7,5.0,6.6,4.9,4.6,5.0,6.5] - new: [....25] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.226][..500] + new: [....25] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.226][..500] detected: [....25] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.226][..500] [IPSec][Unknown][VPN][Safe] - new: [....26] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.226][.4500] + new: [....26] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.226][.4500] detected: [....26] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.226][.4500] [IPSec][Unknown][VPN][Safe] - new: [....27] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.130][..500] + new: [....27] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.130][..500] detected: [....27] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.130][..500] [IPSec][Unknown][VPN][Safe] - new: [....28] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.130][.4500] + new: [....28] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.130][.4500] detected: [....28] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.130][.4500] [IPSec][Unknown][VPN][Safe] analyse: [....28] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.130][.4500] [IPSec][Unknown][VPN][Safe] min| max| avg| stddev| variance| entropy @@ -156,21 +156,21 @@ [IATS(ms)....: 0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0,0.0] [PKTLENS.....: 844,236,140,108,124,444,1360,1056,160,160,1056,160,1360,1360,1312,844,236,140,108,124,444,1360,1056,160,160,1056,160,1360,1360,1312,844,236] [ENTROPIES...: 7.7,6.8,6.3,5.8,6.0,7.4,7.9,7.8,6.6,6.6,7.8,6.6,7.8,7.9,7.9,7.8,6.8,6.3,5.9,6.1,7.4,7.9,7.8,6.6,6.7,7.8,6.7,7.9,7.8,7.8,7.7,6.9] - new: [....29] [ip4][..udp] [..192.168.2.100][42593] -> [109.237.187.193][.4500] + new: [....29] [ip4][..udp] [..192.168.2.100][42593] -> [109.237.187.193][.4500] detected: [....29] [ip4][..udp] [..192.168.2.100][42593] -> [109.237.187.193][.4500] [IPSec][Unknown][VPN][Safe] - new: [....30] [ip4][..udp] [..192.168.2.100][42593] -> [109.237.187.193][..500] + new: [....30] [ip4][..udp] [..192.168.2.100][42593] -> [109.237.187.193][..500] detected: [....30] [ip4][..udp] [..192.168.2.100][42593] -> [109.237.187.193][..500] [IPSec][Unknown][VPN][Safe] - new: [....31] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.194][..500] + new: [....31] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.194][..500] detected: [....31] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.194][..500] [IPSec][Unknown][VPN][Safe] - new: [....32] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.194][.4500] + new: [....32] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.194][.4500] detected: [....32] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.194][.4500] [IPSec][Unknown][VPN][Safe] - new: [....33] [ip4][..udp] [..192.168.2.100][41618] -> [109.237.187.194][.4500] + new: [....33] [ip4][..udp] [..192.168.2.100][41618] -> [109.237.187.194][.4500] detected: [....33] [ip4][..udp] [..192.168.2.100][41618] -> [109.237.187.194][.4500] [IPSec][Unknown][VPN][Safe] - new: [....34] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.195][.4500] + new: [....34] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.195][.4500] detected: [....34] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.195][.4500] [IPSec][Unknown][VPN][Safe] - new: [....35] [ip4][..udp] [..192.168.2.100][41618] -> [109.237.187.194][..500] + new: [....35] [ip4][..udp] [..192.168.2.100][41618] -> [109.237.187.194][..500] detected: [....35] [ip4][..udp] [..192.168.2.100][41618] -> [109.237.187.194][..500] [IPSec][Unknown][VPN][Safe] - new: [....36] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.195][..500] + new: [....36] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.195][..500] detected: [....36] [ip4][..udp] [..192.168.2.100][10500] -> [109.237.187.195][..500] [IPSec][Unknown][VPN][Safe] analyse: [....34] [ip4][..udp] [..192.168.2.100][14500] -> [109.237.187.195][.4500] [IPSec][Unknown][VPN][Safe] min| max| avg| stddev| variance| entropy |