Cisco Cisco Firepower Management Center 4000 Entwickleranleitung

Seite von 536
 
B-154
FireSIGHT eStreamer Integration Guide
 
Appendix B      Understanding Legacy Data Structures 
  Legacy Host Data Structures
User Agent
Fingerprints
Operating System Fingerprint Block Type (130)*
Operating System Fingerprint Block Length
Operating System User Agent Fingerprint Data...
(TCP) Full
Server Data
List Block Type (11)...
List Block Length...
(TCP) Full Server Data Blocks (104)*
(UDP) Full
Server Data
List Block Type (11)
List Block Length 
(UDP) Full Server Data Blocks (104)*
Network
Protocol Data
List Block Type (11)
List Block Length 
(Network) Protocol Data Blocks (4)*
Transport
Protocol Data
List Block Type (11)
List Block Length 
(Transport) Protocol Data Blocks (4)*
MAC
Address Data
List Block Type (11)
List Block Length 
Host MAC Address Data Blocks (95)*
Last Seen 
Host Type
Business Criticality
VLAN ID
VLAN Type
VLAN Priority
Generic List Block Type (31)
Host Client 
Data
Generic List Block Type, continued
Generic List Block Length
Generic List Block Length, continued
Full Host Client Application Data Blocks (112)*
Byte
0
1
2
3
Bit
0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31