Cisco Cisco Firepower Management Center 4000 Guía Del Desarrollador

Descargar
Página de 726
Version 5.3
Sourcefire 3D System eStreamer Integration Guide
460
Understanding Legacy Data Structures
Legacy Intrusion Data Structures
Appendix B
Destination 
IPv4 Address
uint8[4]
Destination IPv4 address used in the event, in 
address octets.
Source Port/
ICMP Type
uint16
If the event protocol type is TCP or UDP, this 
indicates the source port number. If the protocol 
type is ICMP, this indicates the ICMP type.
Destination 
Port/ICMP 
Code
uint16
If the event protocol type is TCP or UDP, this 
indicates the destination port number. If the 
protocol type is ICMP, this indicates the ICMP 
code.
IP Protocol 
Number
uint8
IANA-specified protocol number. For example:
• 0 — IP
• 1 — ICMP
• 6 — TCP
• 17 — UDP
and so on. 
Intrusion Event (IPv4) Record 4.9 - 4.10.x Fields (Continued)
F
IELD
D
ATA
 T
YPE
D
ESCRIPTION