aboutsummaryrefslogtreecommitdiff
path: root/test/results/flow-info/ultrasurf.pcap.out
blob: c36c730513a488e2bbcc4b03254ba6ecb79ec6c9 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
     DAEMON-EVENT: init
     DAEMON-EVENT: [Processed: 0 pkts][ZLib][compressions: 0|diff: 0 / 0]
     DAEMON-EVENT: [Flows][active: 0 / 0|skipped: 0|!detected: 0|guessed: 0|detection-updates: 0|updates: 0]
              new: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [MIDSTREAM] 
         detected: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [UltraSurf][VPN][Acceptable]
          analyse: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [UltraSurf][VPN][Acceptable]
                   [min|max|avg|stddev]
                   [IAT(flow)...:    0.000|   0.150|   0.021|   0.036]
                   [IAT(c->s)...:    0.000|   0.150|   0.017|   0.031][IAT(s->c)...:    0.000|   0.142|   0.029|   0.042]
                   [PKTLEN(c->s): 1350.000|2646.000|1943.100| 641.700][PKTLEN(s->c):   98.000|  98.000|  98.000|   0.000]
                   [BINS(c->s)..: 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,12,0,0,0,0,0,0,10]
                   [BINS(s->c)..: 10,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
              new: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] 
         detected: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe]
                   RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
 detection-update: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe]
                   RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
          analyse: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe]
                   [min|max|avg|stddev]
                   [IAT(flow)...:    0.000|   0.271|   0.063|   0.099]
                   [IAT(c->s)...:    0.000|   0.260|   0.063|   0.099][IAT(s->c)...:    0.000|   0.271|   0.062|   0.100]
                   [PKTLEN(c->s):   70.000|1418.000| 404.300| 430.600][PKTLEN(s->c):   70.000|1358.000| 334.600| 463.300]
                   [BINS(c->s)..: 7,0,2,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,1,2,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,0,0,0,0,0,1,0,0,0,0,0]
                   [BINS(s->c)..: 4,8,0,0,1,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,2,0,0,0,0,0,0,0]
              new: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] 
         detected: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe]
                   RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
 detection-update: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe]
                   RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
          analyse: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe]
                   [min|max|avg|stddev]
                   [IAT(flow)...:    0.000|   0.269|   0.059|   0.101]
                   [IAT(c->s)...:    0.000|   0.261|   0.053|   0.096][IAT(s->c)...:    0.000|   0.269|   0.064|   0.105]
                   [PKTLEN(c->s):   70.000|1418.000| 371.000| 429.700][PKTLEN(s->c):   70.000|1358.000| 436.200| 523.000]
                   [BINS(c->s)..: 7,0,1,0,0,1,1,0,0,1,0,1,0,1,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,2,0,0,0,0,0]
                   [BINS(s->c)..: 3,5,1,0,2,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,1,0,0,3,0,0,0,0,0,0,0]
              end: [.....1] [ip4][..tcp] [....65.49.68.25][50053] -> [....10.132.0.23][37898] [UltraSurf][VPN][Acceptable]
              end: [.....2] [ip4][..tcp] [....10.132.0.23][38120] -> [....65.49.68.25][50053] [TLS][Web][Safe]
                   RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
              end: [.....3] [ip4][..tcp] [....10.132.0.23][38152] -> [....65.49.68.25][50053] [TLS][Web][Safe]
                   RISK: Known Proto on Non Std Port, Missing SNI TLS Extn
     DAEMON-EVENT: shutdown