aboutsummaryrefslogtreecommitdiff
path: root/test/results/flow-info/default/websocket-chisel-ssh.pcap.out
diff options
context:
space:
mode:
Diffstat (limited to 'test/results/flow-info/default/websocket-chisel-ssh.pcap.out')
-rw-r--r--test/results/flow-info/default/websocket-chisel-ssh.pcap.out4
1 files changed, 1 insertions, 3 deletions
diff --git a/test/results/flow-info/default/websocket-chisel-ssh.pcap.out b/test/results/flow-info/default/websocket-chisel-ssh.pcap.out
index 903014f48..490839869 100644
--- a/test/results/flow-info/default/websocket-chisel-ssh.pcap.out
+++ b/test/results/flow-info/default/websocket-chisel-ssh.pcap.out
@@ -7,10 +7,8 @@
new: [.....2] [ip4][..tcp] [..172.18.82.243][...80] -> [..172.18.82.242][51634] [MIDSTREAM]
detected: [.....2] [ip4][..tcp] [..172.18.82.243][...80] -> [..172.18.82.242][51634] [HTTP.WebSocket][Unknown][Web][Acceptable][]
RISK: HTTP Susp User-Agent
- detection-update: [.....2] [ip4][..tcp] [..172.18.82.243][...80] -> [..172.18.82.242][51634] [HTTP.WebSocket][Unknown][Web][Acceptable][]
- RISK: HTTP Susp User-Agent, Unidirectional Traffic
idle: [.....1] [ip4][..tcp] [..172.18.82.242][41986] -> [..172.18.82.243][...80] [HTTP.WebSocket][Unknown][Web][Acceptable][something1.tld]
RISK: Obfuscated Traffic
idle: [.....2] [ip4][..tcp] [..172.18.82.243][...80] -> [..172.18.82.242][51634] [HTTP.WebSocket][Unknown][Web][Acceptable]
- RISK: HTTP Susp User-Agent, Unidirectional Traffic
+ RISK: HTTP Susp User-Agent
DAEMON-EVENT: shutdown