⚲
Project
General
Profile
Sign in
Register
Home
Projects
Help
Search
:
Suricata
All Projects
Suricata
Overview
Activity
Roadmap
Issues
Wiki
Files
Download (292 KB)
Feature #2343
» eve_test2.json
Chris Knott
, 02/06/2018 04:45 AM
{
"timestamp"
:
"2018-02-06T11:00:54.765600+0100"
,
"flow_id"
:
1447738933143132
,
"in_iface"
:
"dummy"
,
"event_type"
:
"http"
,
"src_ip"
:
"172.27.27.9"
,
"src_port"
:
55701
,
"dest_ip"
:
"213.90.74.22"
,
"dest_port"
:
80
,
"proto"
:
"TCP"
,
"tx_id"
:
0
,
"http"
:{
"hostname"
:
"ad.adworx.at"
,
"url"
:
"
\/
RealMedia
\/
ads
\/
adstream_jx.ads
\/
front.orf.at
\/
front
\/
1277959636@Position3?bw=1920&bh=949&sw=1920&sh=1080"
,
"http_user_agent"
:
"Mozilla
\/
5.0 (Windows NT 10.0; Win64; x64) AppleWebKit
\/
537.36 (KHTML, like Gecko) Chrome
\/
63.0.3239.132 Safari
\/
537.36"
,
"http_content_type"
:
"application
\/
x-javascript"
,
"http_refer"
:
"http:
\/\/
orf.at
\/
"
,
"http_method"
:
"GET"
,
"protocol"
:
"HTTP
\/
1.1"
,
"status"
:
200
,
"length"
:
5518
}}
{
"timestamp"
:
"2018-02-06T11:00:57.000680+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
9
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:01:04.000388+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
16
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:01:11.000474+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
23
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:01:18.000433+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
30
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:01:25.000479+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
37
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:01:32.000300+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
44
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:01:39.000470+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
51
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:01:46.000459+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
58
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:01:53.000464+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
65
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:02:00.000411+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
72
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:02:07.000465+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
79
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:02:14.000471+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
86
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:02:21.000458+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
93
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:02:28.000450+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
100
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:02:35.000380+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
107
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:02:42.000465+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
114
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:02:49.000457+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
121
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:02:56.000459+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
128
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:03:03.000448+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
135
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:03:10.000394+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
142
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:03:17.000446+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
149
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:03:24.000463+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
156
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:03:31.000446+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
163
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:03:38.000460+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
170
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:03:45.000262+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
177
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:03:52.000454+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
184
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:03:59.000446+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
191
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:04:06.000457+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
198
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:04:13.000457+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
205
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:04:20.000395+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
212
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:04:27.000345+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
219
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:04:34.000447+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
226
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:04:41.000458+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
233
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:04:48.000445+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
240
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:04:55.000459+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
247
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:05:02.000450+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
254
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:05:09.000438+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
261
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:05:16.000444+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
268
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:05:23.000408+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
275
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:05:30.000464+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
282
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:05:37.000309+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
289
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:05:44.000431+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
296
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:05:51.000294+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
303
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:05:58.000430+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
310
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:06:05.000438+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
317
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:06:12.000262+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
324
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:06:19.000444+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
331
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:06:26.000457+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
338
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:06:33.000422+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
345
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:06:40.000483+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
352
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:06:47.000461+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
359
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:06:54.000268+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
366
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:07:01.000377+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
373
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:07:08.000462+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
380
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:07:15.000457+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
387
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:07:22.000479+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
394
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:07:29.000465+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
401
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:07:36.000462+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
408
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:07:44.000367+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
416
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:07:51.000461+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
423
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:07:58.000470+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
430
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:08:05.000291+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
437
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:08:12.000422+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
444
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:08:19.000457+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
451
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:08:26.000470+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
458
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:08:33.000447+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
465
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:08:40.000394+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
472
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:08:47.000468+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
479
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:08:54.000425+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
486
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:09:01.000396+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
493
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:09:08.000309+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
500
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:09:15.000471+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
507
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:09:22.000433+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
514
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:09:29.000460+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
521
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:09:36.000456+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
528
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:09:43.000459+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
535
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:09:50.000472+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
542
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:09:57.000405+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
549
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:10:04.000469+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
556
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:10:11.000432+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
563
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:10:18.000473+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
570
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:10:25.000455+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
577
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:10:33.000434+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
585
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:10:41.000457+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
593
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:10:48.000458+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
600
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:10:55.000471+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
607
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
1
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:11:02.000354+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
614
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:11:09.000456+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
621
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:11:16.000424+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
628
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:11:23.000420+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
635
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:11:30.000474+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
642
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:11:37.000460+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
649
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:11:44.000358+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
656
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:11:51.000468+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
663
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:11:58.000322+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
670
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:12:05.000459+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
677
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:12:12.000433+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
684
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:12:19.000457+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
691
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:12:26.000418+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
698
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:12:33.000418+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
705
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:12:40.000483+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
712
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:12:47.000451+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
719
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:12:54.000455+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
726
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:13:01.000458+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
733
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:13:08.000470+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
740
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:13:15.000398+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
747
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:13:22.000458+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
754
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:13:29.000453+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
761
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:13:36.000472+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
768
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:13:43.000391+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
775
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:13:50.000476+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
782
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:13:57.000258+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
789
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:14:04.000429+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
796
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:14:11.000407+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
803
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:14:18.000442+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
810
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:14:25.000376+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
817
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:14:32.000440+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
824
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:14:39.000461+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
831
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:14:46.000452+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
838
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:14:53.000299+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
845
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:15:00.000454+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
852
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:15:07.000415+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
859
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:15:14.000423+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
866
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:15:21.000460+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
873
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:15:28.000444+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
880
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:15:35.000444+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
887
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:15:42.000470+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
894
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:15:49.000475+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
901
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:15:57.000453+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
909
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:16:04.000478+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
916
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:16:12.000461+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
924
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:16:19.000455+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
931
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:16:27.000411+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
939
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:16:34.000433+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
946
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:16:41.000454+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
953
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:16:48.000441+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
960
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:16:55.000366+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
967
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:17:02.000443+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
974
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:17:09.000364+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
981
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:17:16.000272+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
988
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:17:23.000450+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
995
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
35131
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:10:55.000547+0100"
,
"flow_id"
:
1447738933143132
,
"event_type"
:
"fileinfo"
,
"src_ip"
:
"213.90.74.22"
,
"src_port"
:
80
,
"dest_ip"
:
"172.27.27.9"
,
"dest_port"
:
55701
,
"proto"
:
"TCP"
,
"http"
:{
"hostname"
:
"ad.adworx.at"
,
"url"
:
"
\/
RealMedia
\/
ads
\/
adstream_jx.ads
\/
front.orf.at
\/
front
\/
1277959636@Position3?bw=1920&bh=949&sw=1920&sh=1080"
,
"http_user_agent"
:
"Mozilla
\/
5.0 (Windows NT 10.0; Win64; x64) AppleWebKit
\/
537.36 (KHTML, like Gecko) Chrome
\/
63.0.3239.132 Safari
\/
537.36"
,
"http_content_type"
:
"application
\/
x-javascript"
,
"http_refer"
:
"http:
\/\/
orf.at
\/
"
,
"http_method"
:
"GET"
,
"protocol"
:
"HTTP
\/
1.1"
,
"status"
:
200
,
"length"
:
5518
},
"app_proto"
:
"http"
,
"fileinfo"
:{
"filename"
:
"
\/
RealMedia
\/
ads
\/
adstream_jx.ads
\/
front.orf.at
\/
front
\/
1277959636@Position3"
,
"gaps"
:
false
,
"state"
:
"CLOSED"
,
"stored"
:
false
,
"size"
:
5518
,
"tx_id"
:
0
}}
{
"timestamp"
:
"2018-02-06T11:17:30.000429+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1002
,
"capture"
:{
"kernel_packets"
:
1
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
10
,
"bytes"
:
6852
,
"invalid"
:
0
,
"ipv4"
:
10
,
"ipv6"
:
0
,
"ethernet"
:
10
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
10
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
685
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
1
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
1
,
"flows_timeout_inuse"
:
1
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65535
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
1
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
80
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:17:37.000450+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1009
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
80
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:17:44.000455+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1016
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
80
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:17:51.000449+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1023
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
80
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:17:58.000448+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1030
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
80
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:18:05.000289+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1037
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
80
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:18:12.000402+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1044
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
80
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:18:19.000446+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1051
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
80
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:18:26.000414+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1058
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074592
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
991232
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
0
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
80
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:18:29.000505+0100"
,
"flow_id"
:
1447738933143132
,
"event_type"
:
"flow"
,
"src_ip"
:
"172.27.27.9"
,
"src_port"
:
55701
,
"dest_ip"
:
"213.90.74.22"
,
"dest_port"
:
80
,
"proto"
:
"TCP"
,
"app_proto"
:
"http"
,
"flow"
:{
"pkts_toserver"
:
5
,
"pkts_toclient"
:
7
,
"bytes_toserver"
:
815
,
"bytes_toclient"
:
6151
,
"start"
:
"2018-02-06T11:00:54.681564+0100"
,
"end"
:
"2018-02-06T11:17:28.207005+0100"
,
"age"
:
994
,
"state"
:
"closed"
,
"reason"
:
"timeout"
,
"alerted"
:
false
},
"tcp"
:{
"tcp_flags"
:
"1b"
,
"tcp_flags_ts"
:
"1b"
,
"tcp_flags_tc"
:
"1b"
,
"syn"
:
true
,
"fin"
:
true
,
"psh"
:
true
,
"ack"
:
true
,
"state"
:
"closed"
}}
{
"timestamp"
:
"2018-02-06T11:18:33.000428+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1065
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074304
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
983040
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
1
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
0
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:18:40.000408+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1072
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074304
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
983040
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
1
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
0
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:18:47.000442+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1079
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074304
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
983040
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
1
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
0
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:18:54.000461+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1086
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074304
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
983040
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
1
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
0
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:19:01.000362+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1093
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074304
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
983040
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
1
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
0
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:19:08.000290+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1100
,
"capture"
:{
"kernel_packets"
:
11
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074304
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
983040
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
1
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
0
,
"memcap"
:
0
}}}
{
"timestamp"
:
"2018-02-06T11:19:13.766675+0100"
,
"event_type"
:
"stats"
,
"stats"
:{
"uptime"
:
1105
,
"capture"
:{
"kernel_packets"
:
12
,
"kernel_drops"
:
0
},
"decoder"
:{
"pkts"
:
12
,
"bytes"
:
6966
,
"invalid"
:
0
,
"ipv4"
:
12
,
"ipv6"
:
0
,
"ethernet"
:
12
,
"raw"
:
0
,
"null"
:
0
,
"sll"
:
0
,
"tcp"
:
12
,
"udp"
:
0
,
"sctp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"ppp"
:
0
,
"pppoe"
:
0
,
"gre"
:
0
,
"vlan"
:
0
,
"vlan_qinq"
:
0
,
"ieee8021ah"
:
0
,
"teredo"
:
0
,
"ipv4_in_ipv6"
:
0
,
"ipv6_in_ipv6"
:
0
,
"mpls"
:
0
,
"avg_pkt_size"
:
580
,
"max_pkt_size"
:
1506
,
"erspan"
:
0
,
"ipraw"
:{
"invalid_ip_version"
:
0
},
"ltnull"
:{
"pkt_too_small"
:
0
,
"unsupported_type"
:
0
},
"dce"
:{
"pkt_too_small"
:
0
}},
"flow"
:{
"memcap"
:
0
,
"tcp"
:
1
,
"udp"
:
0
,
"icmpv4"
:
0
,
"icmpv6"
:
0
,
"spare"
:
10000
,
"emerg_mode_entered"
:
0
,
"emerg_mode_over"
:
0
,
"tcp_reuse"
:
0
,
"memuse"
:
7074304
},
"defrag"
:{
"ipv4"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"ipv6"
:{
"fragments"
:
0
,
"reassembled"
:
0
,
"timeouts"
:
0
},
"max_frag_hits"
:
0
},
"tcp"
:{
"sessions"
:
1
,
"ssn_memcap_drop"
:
0
,
"pseudo"
:
0
,
"pseudo_failed"
:
0
,
"invalid_checksum"
:
0
,
"no_flow"
:
0
,
"syn"
:
1
,
"synack"
:
1
,
"rst"
:
0
,
"segment_memcap_drop"
:
0
,
"stream_depth_reached"
:
0
,
"reassembly_gap"
:
0
,
"overlap"
:
0
,
"overlap_diff_data"
:
0
,
"insert_data_normal_fail"
:
0
,
"insert_data_overlap_fail"
:
0
,
"insert_list_fail"
:
0
,
"memuse"
:
6881280
,
"reassembly_memuse"
:
983040
},
"detect"
:{
"alert"
:
0
},
"app_layer"
:{
"flow"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"imap"
:
0
,
"msn"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"failed_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
,
"failed_udp"
:
0
},
"tx"
:{
"http"
:
1
,
"ftp"
:
0
,
"smtp"
:
0
,
"tls"
:
0
,
"ssh"
:
0
,
"smb"
:
0
,
"dcerpc_tcp"
:
0
,
"dns_tcp"
:
0
,
"dcerpc_udp"
:
0
,
"dns_udp"
:
0
}},
"flow_mgr"
:{
"closed_pruned"
:
1
,
"new_pruned"
:
0
,
"est_pruned"
:
0
,
"bypassed_pruned"
:
0
,
"flows_checked"
:
0
,
"flows_notimeout"
:
0
,
"flows_timeout"
:
0
,
"flows_timeout_inuse"
:
0
,
"flows_removed"
:
0
,
"rows_checked"
:
65536
,
"rows_skipped"
:
65536
,
"rows_empty"
:
0
,
"rows_busy"
:
0
,
"rows_maxlen"
:
0
},
"file_store"
:{
"open_files"
:
0
},
"dns"
:{
"memuse"
:
0
,
"memcap_state"
:
0
,
"memcap_global"
:
0
},
"http"
:{
"memuse"
:
0
,
"memcap"
:
0
}}}
« Previous
1
…
3
4
5
6
Next »
(5-5/6)
Loading...