Cisco Cisco Firepower Management Center 2000 Guía Del Desarrollador
Version 5.3
Sourcefire 3D System eStreamer Integration Guide
340
Understanding Discovery & Connection Data Structures
Host Discovery and Connection Data Blocks
Chapter 4
The following diagram shows the format of an Operating System Fingerprint data
block in 5.1+.
Byte
0
1
2
3
Bit
0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31
Operating System Fingerprint Block Type (130)
Operating System Fingerprint Block Length
OS Fingerprint
UU
ID
Fingerprint UUID
Fingerprint UUID, continued
Fingerprint UUID, continued
Fingerprint UUID, continued
Fingerprint Type
Fingerprint Source Type
Fingerprint Source ID
Last Seen
Mobile Device Informat
ion
TTL Difference
Generic List Block Type (31)
Generic List Block
Type, cont.
Generic List Block Length
Generic List Block
Length, cont.
Mobile Device Information Data Blocks*