diff options
Diffstat (limited to 'test/results/flow-info/default/webex.pcap.out')
-rw-r--r-- | test/results/flow-info/default/webex.pcap.out | 36 |
1 files changed, 18 insertions, 18 deletions
diff --git a/test/results/flow-info/default/webex.pcap.out b/test/results/flow-info/default/webex.pcap.out index 2041598f0..d9accedc8 100644 --- a/test/results/flow-info/default/webex.pcap.out +++ b/test/results/flow-info/default/webex.pcap.out @@ -7,9 +7,9 @@ detection-update: [.....1] [ip4][..tcp] [.......10.8.0.1][41346] -> [..64.68.105.103][..443] [TLS.Webex][Webex][VoIP][Acceptable][radcom.webex.com] RISK: TLS (probably) Not Carrying HTTPS analyse: [.....1] [ip4][..tcp] [.......10.8.0.1][41346] -> [..64.68.105.103][..443] [TLS.Webex][Webex][VoIP][Acceptable] - min| max| avg| stddev| variance| entropy - [IAT.........: 0.000| 0.557| 0.113| 0.156| 24421.341| 3.700] - [PKTLEN......: 40.000| 2760.000| 387.900| 588.900| 346810.600| 3.800] + min| max| avg| stddev| variance| entropy + [IAT.........: < 0.001| 0.557| 0.113| 0.156| 24421.341| 3.700] + [PKTLEN......: 40.000| 2760.000| 387.900| 588.900| 346810.600| 3.800] [BINS(c->s)..: 9,0,1,0,0,0,1,0,1,1,0,0,0,0,1,0,3,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] [BINS(s->c)..: 8,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,2,0,0,0,0,1] [DIRECTIONS..: 0,1,0,0,1,1,0,1,0,0,1,1,0,0,1,0,1,1,0,1,0,0,1,0,1,1,0,1,0,0,1,0] @@ -34,9 +34,9 @@ detection-update: [.....4] [ip4][..tcp] [.......10.8.0.1][41351] -> [..64.68.105.103][..443] [TLS.Webex][Webex][VoIP][Acceptable][radcom.webex.com] RISK: TLS (probably) Not Carrying HTTPS analyse: [.....2] [ip4][..tcp] [.......10.8.0.1][41348] -> [..64.68.105.103][..443] [TLS.Webex][Webex][VoIP][Acceptable] - min| max| avg| stddev| variance| entropy - [IAT.........: 0.000| 0.455| 0.115| 0.126| 15828.845| 4.100] - [PKTLEN......: 40.000|18006.000| 1574.700| 3700.100| 13691057.000| 2.900] + min| max| avg| stddev| variance| entropy + [IAT.........: < 0.001| 0.455| 0.115| 0.126| 15828.845| 4.100] + [PKTLEN......: 40.000| 18006.000| 1574.700| 3700.100| 13691057.000| 2.900] [BINS(c->s)..: 10,1,0,0,0,0,0,1,0,0,0,0,0,0,2,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] [BINS(s->c)..: 7,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,3,0,0,0,0,5] [DIRECTIONS..: 0,1,0,0,1,1,0,0,1,0,1,0,1,1,0,1,0,1,1,0,1,0,1,0,1,0,1,0,1,0,1,0] @@ -61,9 +61,9 @@ detection-update: [.....9] [ip4][..tcp] [.......10.8.0.1][41358] -> [..64.68.105.103][..443] [TLS.Webex][Webex][VoIP][Acceptable][] RISK: Obsolete TLS (v1.1 or older), Weak TLS Cipher analyse: [.....9] [ip4][..tcp] [.......10.8.0.1][41358] -> [..64.68.105.103][..443] [TLS.Webex][Webex][VoIP][Acceptable] - min| max| avg| stddev| variance| entropy - [IAT.........: 0.000| 1.031| 0.154| 0.247| 61096.366| 3.800] - [PKTLEN......: 40.000| 8887.000| 1108.500| 2294.900| 5266403.500| 3.100] + min| max| avg| stddev| variance| entropy + [IAT.........: < 0.001| 1.031| 0.154| 0.247| 61096.366| 3.800] + [PKTLEN......: 40.000| 8887.000| 1108.500| 2294.900| 5266403.500| 3.100] [BINS(c->s)..: 12,2,0,0,0,0,0,0,0,0,1,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] [BINS(s->c)..: 5,1,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,5,0,0,0,0,4] [DIRECTIONS..: 0,1,0,0,1,1,0,1,0,0,1,1,0,1,0,1,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0] @@ -195,9 +195,9 @@ detected: [....39] [ip4][..tcp] [.......10.8.0.1][55665] -> [..173.243.0.110][..443] [TLS][Webex][Web][Safe][] RISK: Obsolete TLS (v1.1 or older) analyse: [....37] [ip4][..tcp] [.......10.8.0.1][51155] -> [.62.109.224.120][..443] [TLS.Webex][Webex][VoIP][Acceptable] - min| max| avg| stddev| variance| entropy - [IAT.........: 0.000| 2.215| 0.340| 0.548| 300050.219| 3.700] - [PKTLEN......: 40.000|10567.000| 619.600| 1915.700| 3669828.500| 2.500] + min| max| avg| stddev| variance| entropy + [IAT.........: < 0.001| 2.215| 0.340| 0.548| 300050.219| 3.700] + [PKTLEN......: 40.000| 10567.000| 619.600| 1915.700| 3669828.500| 2.500] [BINS(c->s)..: 13,1,0,0,0,0,0,0,0,0,1,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] [BINS(s->c)..: 4,1,1,1,0,1,1,1,0,0,1,0,0,0,0,1,0,1,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2] [DIRECTIONS..: 0,1,0,0,1,1,0,0,1,1,0,1,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0] @@ -207,9 +207,9 @@ detection-update: [....39] [ip4][..tcp] [.......10.8.0.1][55665] -> [..173.243.0.110][..443] [TLS.Webex][Webex][VoIP][Acceptable][] RISK: Obsolete TLS (v1.1 or older), Weak TLS Cipher analyse: [....36] [ip4][..tcp] [.......10.8.0.1][51154] -> [.62.109.224.120][..443] [TLS.Webex][Webex][VoIP][Acceptable] - min| max| avg| stddev| variance| entropy - [IAT.........: 0.000| 2.270| 0.347| 0.598| 357673.959| 3.300] - [PKTLEN......: 40.000| 3947.000| 310.600| 685.400| 469733.500| 3.500] + min| max| avg| stddev| variance| entropy + [IAT.........: < 0.001| 2.270| 0.347| 0.598| 357673.959| 3.300] + [PKTLEN......: 40.000| 3947.000| 310.600| 685.400| 469733.500| 3.500] [BINS(c->s)..: 3,1,1,1,0,0,1,0,0,0,3,0,0,0,0,1,5,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] [BINS(s->c)..: 14,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1] [DIRECTIONS..: 0,1,0,0,1,1,0,0,1,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1] @@ -281,9 +281,9 @@ new: [....53] [ip4][..udp] [.......10.8.0.1][51772] -> [.62.109.229.158][.9000] new: [....54] [ip4][..tcp] [.......10.8.0.1][51859] -> [.62.109.229.158][..443] analyse: [....52] [ip4][..tcp] [.......10.8.0.1][51857] -> [.62.109.229.158][..443] [TLS.Webex][Webex][VoIP][Acceptable] - min| max| avg| stddev| variance| entropy - [IAT.........: 0.000| 1.367| 0.190| 0.352| 124124.103| 3.400] - [PKTLEN......: 40.000| 3947.000| 234.000| 677.200| 458632.100| 3.100] + min| max| avg| stddev| variance| entropy + [IAT.........: < 0.001| 1.367| 0.190| 0.352| 124124.103| 3.400] + [PKTLEN......: 40.000| 3947.000| 234.000| 677.200| 458632.100| 3.100] [BINS(c->s)..: 7,0,2,3,1,1,0,0,0,0,1,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0] [BINS(s->c)..: 10,2,2,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1] [DIRECTIONS..: 0,1,0,0,1,1,0,0,1,1,0,0,1,1,0,0,1,1,0,1,0,0,1,0,1,0,1,0,1,0,1,1] |