1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
|
DAEMON-EVENT: init
DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0]
DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0]
new: [.....1] [ip4][..tcp] [..192.168.1.119][51331] -> [.104.16.249.249][..443] [MIDSTREAM]
detected: [.....1] [ip4][..tcp] [..192.168.1.119][51331] -> [.104.16.249.249][..443] [TLS.Cloudflare][Web][Acceptable]
new: [.....2] [ip4][..tcp] [..192.168.1.119][51606] -> [.104.16.249.249][..443]
detected: [.....2] [ip4][..tcp] [..192.168.1.119][51606] -> [.104.16.249.249][..443] [TLS.DoH_DoT][Network][Fun]
detection-update: [.....2] [ip4][..tcp] [..192.168.1.119][51606] -> [.104.16.249.249][..443] [TLS.DoH_DoT][Network][Fun]
new: [.....3] [ip4][..tcp] [..192.168.1.119][51612] -> [..104.16.124.96][..443]
analyse: [.....2] [ip4][..tcp] [..192.168.1.119][51606] -> [.104.16.249.249][..443] [TLS.DoH_DoT][Network][Fun]
[min|max|avg|stddev]
[IAT(flow)...: 0.000| 0.180| 0.028| 0.054]
[IAT(c->s)...: 0.000| 0.178| 0.027| 0.053][IAT(s->c)...: 0.000| 0.180| 0.029| 0.055]
[PKTLEN(c->s): 54.000| 670.000| 131.600| 144.900][PKTLEN(s->c): 60.000| 736.000| 152.000| 182.300]
[BINS(c->s)..: 10,1,3,0,1,1,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 11,1,0,0,0,0,0,1,0,0,1,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
detected: [.....3] [ip4][..tcp] [..192.168.1.119][51612] -> [..104.16.124.96][..443] [TLS.Cloudflare][Web][Acceptable]
detection-update: [.....3] [ip4][..tcp] [..192.168.1.119][51612] -> [..104.16.124.96][..443] [TLS.Cloudflare][Web][Acceptable]
analyse: [.....3] [ip4][..tcp] [..192.168.1.119][51612] -> [..104.16.124.96][..443] [TLS.Cloudflare][Web][Acceptable]
[min|max|avg|stddev]
[IAT(flow)...: 0.000| 0.473| 0.050| 0.107]
[IAT(c->s)...: 0.000| 0.473| 0.052| 0.119][IAT(s->c)...: 0.000| 0.380| 0.049| 0.095]
[PKTLEN(c->s): 54.000|1001.000| 185.200| 295.900][PKTLEN(s->c): 60.000|1514.000| 576.800| 561.000]
[BINS(c->s)..: 12,0,1,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 7,0,0,0,0,0,0,1,0,0,0,1,0,0,0,0,1,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,1,0,0,1,0,0,0,0,0,0,0,2,0,1,0,0]
new: [.....4] [ip4][..tcp] [..192.168.1.119][51635] -> [..104.17.198.37][..443]
new: [.....5] [ip4][..tcp] [..192.168.1.119][51636] -> [..104.17.198.37][..443]
new: [.....6] [ip4][..tcp] [..192.168.1.119][51637] -> [..104.22.72.170][..443]
new: [.....7] [ip4][..tcp] [..192.168.1.119][51638] -> [..104.22.72.170][..443]
new: [.....8] [ip4][..tcp] [..192.168.1.119][51639] -> [..104.22.72.170][..443]
detected: [.....4] [ip4][..tcp] [..192.168.1.119][51635] -> [..104.17.198.37][..443] [TLS.Cloudflare][Web][Acceptable]
detected: [.....5] [ip4][..tcp] [..192.168.1.119][51636] -> [..104.17.198.37][..443] [TLS.Cloudflare][Web][Acceptable]
detected: [.....6] [ip4][..tcp] [..192.168.1.119][51637] -> [..104.22.72.170][..443] [TLS.Cloudflare][Web][Acceptable]
detected: [.....8] [ip4][..tcp] [..192.168.1.119][51639] -> [..104.22.72.170][..443] [TLS.Cloudflare][Web][Acceptable]
detected: [.....7] [ip4][..tcp] [..192.168.1.119][51638] -> [..104.22.72.170][..443] [TLS.Cloudflare][Web][Acceptable]
detection-update: [.....4] [ip4][..tcp] [..192.168.1.119][51635] -> [..104.17.198.37][..443] [TLS.Cloudflare][Web][Acceptable]
detection-update: [.....5] [ip4][..tcp] [..192.168.1.119][51636] -> [..104.17.198.37][..443] [TLS.Cloudflare][Web][Acceptable]
detection-update: [.....6] [ip4][..tcp] [..192.168.1.119][51637] -> [..104.22.72.170][..443] [TLS.Cloudflare][Web][Acceptable]
detection-update: [.....8] [ip4][..tcp] [..192.168.1.119][51639] -> [..104.22.72.170][..443] [TLS.Cloudflare][Web][Acceptable]
detection-update: [.....7] [ip4][..tcp] [..192.168.1.119][51638] -> [..104.22.72.170][..443] [TLS.Cloudflare][Web][Acceptable]
analyse: [.....6] [ip4][..tcp] [..192.168.1.119][51637] -> [..104.22.72.170][..443] [TLS.Cloudflare][Web][Acceptable]
[min|max|avg|stddev]
[IAT(flow)...: 0.000| 0.144| 0.032| 0.043]
[IAT(c->s)...: 0.000| 0.126| 0.029| 0.037][IAT(s->c)...: 0.000| 0.144| 0.035| 0.049]
[PKTLEN(c->s): 54.000| 766.000| 136.700| 172.600][PKTLEN(s->c): 60.000|1514.000| 476.300| 529.000]
[BINS(c->s)..: 12,0,3,0,0,1,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 7,0,0,0,0,0,0,0,0,2,0,0,0,0,0,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0,0,1,0,0]
idle: [.....6] [ip4][..tcp] [..192.168.1.119][51637] -> [..104.22.72.170][..443] [TLS.Cloudflare][Web][Acceptable]
end: [.....7] [ip4][..tcp] [..192.168.1.119][51638] -> [..104.22.72.170][..443]
end: [.....8] [ip4][..tcp] [..192.168.1.119][51639] -> [..104.22.72.170][..443]
end: [.....1] [ip4][..tcp] [..192.168.1.119][51331] -> [.104.16.249.249][..443]
idle: [.....2] [ip4][..tcp] [..192.168.1.119][51606] -> [.104.16.249.249][..443] [TLS.DoH_DoT][Network][Fun]
idle: [.....3] [ip4][..tcp] [..192.168.1.119][51612] -> [..104.16.124.96][..443] [TLS.Cloudflare][Web][Acceptable]
idle: [.....4] [ip4][..tcp] [..192.168.1.119][51635] -> [..104.17.198.37][..443] [TLS.Cloudflare][Web][Acceptable]
idle: [.....5] [ip4][..tcp] [..192.168.1.119][51636] -> [..104.17.198.37][..443] [TLS.Cloudflare][Web][Acceptable]
DAEMON-EVENT: shutdown
|