From c9514136b7c4246a57b85474d1a8e376a9009d4a Mon Sep 17 00:00:00 2001 From: Toni Uhlig Date: Tue, 23 May 2023 04:38:07 +0200 Subject: bump libnDPI to ... * upstream changed regression test interface, needed to adapt * improved libnDPI helper build script * updated JSON schema Signed-off-by: Toni Uhlig --- test/results/flow-info/default/windowsupdate_over_http.pcap.out | 9 +++++++++ 1 file changed, 9 insertions(+) create mode 100644 test/results/flow-info/default/windowsupdate_over_http.pcap.out (limited to 'test/results/flow-info/default/windowsupdate_over_http.pcap.out') diff --git a/test/results/flow-info/default/windowsupdate_over_http.pcap.out b/test/results/flow-info/default/windowsupdate_over_http.pcap.out new file mode 100644 index 000000000..a43f16ba4 --- /dev/null +++ b/test/results/flow-info/default/windowsupdate_over_http.pcap.out @@ -0,0 +1,9 @@ + DAEMON-EVENT: init + new: [.....1] [ip4][..tcp] [......10.0.2.15][49815] -> [..151.99.72.125][...80] + detected: [.....1] [ip4][..tcp] [......10.0.2.15][49815] -> [..151.99.72.125][...80] [HTTP.WindowsUpdate][Unknown][SoftwareUpdate][Safe][151.99.72.125] + RISK: HTTP/TLS/QUIC Numeric Hostname/SNI + detection-update: [.....1] [ip4][..tcp] [......10.0.2.15][49815] -> [..151.99.72.125][...80] [HTTP.WindowsUpdate][Unknown][Download][Safe][151.99.72.125] + RISK: Binary App Transfer, HTTP/TLS/QUIC Numeric Hostname/SNI + idle: [.....1] [ip4][..tcp] [......10.0.2.15][49815] -> [..151.99.72.125][...80] [HTTP.WindowsUpdate][Unknown][Download][Safe] + RISK: Binary App Transfer, HTTP/TLS/QUIC Numeric Hostname/SNI + DAEMON-EVENT: shutdown -- cgit v1.2.3