Cisco Cisco Firepower Management Center 4000 Guía Del Desarrollador

Descargar
Página de 536
 
3-59
FireSIGHT eStreamer Integration Guide
 
Chapter 3      Understanding Intrusion and Correlation Data Structures
  Understanding Series 2 Data Blocks
File Name
File Type ID, cont.
String Block Type (0)
String Block Type (0), cont.
String Block Length
String Block Length, cont.
File Name...
File Size
File Size, continued
Direction
Application ID
App ID, cont.
User ID
URI
User ID, cont.
String Block Type (0)
String Block Type (0), 
cont.
String Block Length
String Block Length, 
cont.
URI...
Signature
String Block Type (0)
String Block Length
Signature...
Source Port
Destination Port
Protocol
Access Control Policy UUID
Access Control Policy UUID, continued
Access Control Policy UUID, continued
Access Control Policy UUID, continued
AC Pol UUID, cont.
Source Country
Dst. Country
Dst. Country, cont.
Web Application ID
Web App. ID, cont.
Client Application ID
Client App. ID, cont.
Security Context
Security Context, continued
Security Context, continued
Byte
0
1
2
3
Bit
0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31