Simplify ZeroMQ detection (#2847)

This commit is contained in:
Vladimir Gavrilov 2025-05-23 17:09:16 +03:00 committed by GitHub
parent 74cb03eb4c
commit afc0da6468
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
100 changed files with 188 additions and 209 deletions

View file

@ -1,8 +1,8 @@
Guessed flow protos: 1
DPI Packets (TCP): 24 (24.00 pkts/flow)
DPI Packets (TCP): 22 (22.00 pkts/flow)
Confidence Match by port : 1 (flows)
Num dissector calls: 239 (239.00 diss/flow)
Num dissector calls: 231 (231.00 diss/flow)
LRU cache ookla: 0/0/0 (insert/search/found)
LRU cache bittorrent: 0/3/0 (insert/search/found)
LRU cache stun: 0/0/0 (insert/search/found)
@ -26,4 +26,4 @@ TLS 28 9108 1
Safe 28 9108 1
1 TCP 172.31.3.224:42835 <-> 216.58.212.100:443 [proto: 91/TLS][IP: 126/Google][Encrypted][Confidence: Match by port][FPC: 126/Google, Confidence: IP address][DPI packets: 24][cat: Web/5][16 pkts/1512 bytes <-> 12 pkts/7596 bytes][Goodput ratio: 43/91][6.67 sec][bytes ratio: -0.668 (Download)][IAT c2s/s2c min/avg/max/stddev: 76/66 422/544 1185/1213 376/402][Pkt Len c2s/s2c min/avg/max/stddev: 54/60 94/633 368/1484 87/622][TCP Fingerprint: 2_64_5840_6bbe28597824/Unknown][Plen Bins: 8,8,0,8,0,8,0,0,0,25,0,0,0,0,0,0,0,8,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,33,0,0,0]
1 TCP 172.31.3.224:42835 <-> 216.58.212.100:443 [proto: 91/TLS][IP: 126/Google][Encrypted][Confidence: Match by port][FPC: 126/Google, Confidence: IP address][DPI packets: 22][cat: Web/5][16 pkts/1512 bytes <-> 12 pkts/7596 bytes][Goodput ratio: 43/91][6.67 sec][bytes ratio: -0.668 (Download)][IAT c2s/s2c min/avg/max/stddev: 76/66 422/544 1185/1213 376/402][Pkt Len c2s/s2c min/avg/max/stddev: 54/60 94/633 368/1484 87/622][TCP Fingerprint: 2_64_5840_6bbe28597824/Unknown][Plen Bins: 8,8,0,8,0,8,0,0,0,25,0,0,0,0,0,0,0,8,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,33,0,0,0]