|
解密策略
|
1772186569.823 182 10.48.48.192 TCP_MISS_SSL/200 39 CONNECT tunnel://amojarra.cisco.local:443/ - DIRECT/amojarra.cisco.local - DECRYPT_CUSTOMCAT_7-DecryptingTraffic-DefaultGroup-NONE-NONE-LAB_Access-NONE <"C_N cate",-,-,"-",-,-,-,"-",-,"-",-,"-","-",-,"-"-","-","-","-","-","-","-",1.71,0,-,"-","-"-","-"-","-"-","-"-",-"-"-","-"-",->-
|
|
訪問策略
|
1772186576.735 2242 10.48.48.192 TCP_DENIED_SSL/403 0 GET https://amojarra.cisco.local:443/1mb.exe - DIRECT/amojarra.cisco.local application/x-msdos-program BLOCK_ADMIN_FILE_TYPE_12-Block_Exec-DefaultGroup-NONE-NONE-NONE-LAB_Access-NONE <"C_N cate",ns,0,"-",0,0,0,-"-",-,-,"-"-",-,"-",-,"nc",-"-","-","-","未知","未知","-",0.00,0,-,"未知","-","-"-"-",-,"-,"-"-"-","-"-"-",-"-"-",->->—
|