Cisco Cisco Firepower Management Center 4000 Guía Del Desarrollador
Version 5.3
Sourcefire 3D System eStreamer Integration Guide
460
Understanding Legacy Data Structures
Legacy Intrusion Data Structures
Appendix B
Destination
IPv4 Address
uint8[4]
Destination IPv4 address used in the event, in
address octets.
Source Port/
ICMP Type
uint16
If the event protocol type is TCP or UDP, this
indicates the source port number. If the protocol
type is ICMP, this indicates the ICMP type.
Destination
Port/ICMP
Code
uint16
If the event protocol type is TCP or UDP, this
indicates the destination port number. If the
protocol type is ICMP, this indicates the ICMP
code.
IP Protocol
Number
uint8
IANA-specified protocol number. For example:
• 0 — IP
• 0 — IP
• 1 — ICMP
• 6 — TCP
• 17 — UDP
and so on.
and so on.
Intrusion Event (IPv4) Record 4.9 - 4.10.x Fields (Continued)
F
IELD
D
ATA
T
YPE
D
ESCRIPTION