sos5.1.0
info
This protocol anomaly is a Gnutella message with a search
criteria field that does not end with a NULL character.
P2P:AUDIT:GNUTELLA-SEARCH
sos5.1.0
info
This protocol anomaly is a Gnutella server response that
does not use the expected syntax. Correct syntax for Gnutella
0.4 is: GNUTELLA OK<CR><LF>; correct syntax for Gnutella
0.6 is: GNUTELLA/0.6 200 OK<CR><LF>.
P2P:AUDIT:GNUTELLA-SVR-RESP
sos5.1.0
info
This protocol anomaly is a Gnutella message with a TTL
that exceeds the user-defined maximum. The default TTL
is 8. The Gnutella RFC recommends an 8 to 10 TTL maximum
for Gnutella messages.
P2P:AUDIT:GNUTELLA-TTL
sos5.1.0
info
This protocol anomaly is a Gnutella message with a connect
string that does not conform to Gnutella RFC or the
requesting Gnutella version is not 0.4 or 0.6.
P2P:AUDIT:GNUTELLA-UNSUP-VER
sos5.1.0
info
This signature detects requests to a BitTorrent tracker
website. Users may be querying the tracker to look for files
to download.
P2P:BITTORRENT:TRACKER-QUERY
sos5.1.0
info
This signature detects 'scrape' requests to a BitTorrent
tracker website. Users may be querying the tracker to look
for files to download.
P2P:BITTORRENT:TRACKER-SCRAPE
sos5.1.0
info
This signature detects use of the Direct Connect Plus Plus
(DC++) file sharing client.
P2P:DC:DC-PP-ACTIVE
sos5.1.0
info
This signature detects version checks by eDonkey 2000, a
peer-to-peer file sharing client. The eDonkey client
occasionally checks its own version number to ensure that
the client is current.
P2P:EDONKEY:CLIENT-VER-CHECK
sos5.1.0
info
This signature detects Gnutella client connection requests.
Because Gnutella does not use a fixed port number, this
signature searches TCP connections to port 1024 and higher
by default.
P2P:GNUTELLA:CONNECT
sos5.1.0
info
This signature detects GNUTella server responses to a
connection request. Because GNUTella does not use a fixed
port number, this signature searches TCP connections to
port 1024 and higher by default.
P2P:GNUTELLA:CONNECTION-OK
sos5.1.0
info
This signature detects Gnutella server responses to a
connection request. Because Gnutella does not use a fixed
port number, this signature searches TCP connections to
port 1024 and higher by default.
P2P:GNUTELLA:CONNECTION-OK-V06
sos5.1.0
info
This signature detects activity by the peer-to-peer (P2P) file
sharing client MLDonkey, a multi-protocol P2P file sharing
application.
P2P:MLDONKEY:CLIENT-ACTIVE
sos5.1.0
info
This signature detects a Skype client request (to a central
server) that checks for the latest version of the client
software.
P2P:SKYPE:VERSION-CHECK
905
Copyright © 2010, Juniper Networks, Inc.
Appendix E: Log Entries
Содержание NETWORK AND SECURITY MANAGER 2010.3
Страница 6: ...Copyright 2010 Juniper Networks Inc vi...
Страница 36: ...Copyright 2010 Juniper Networks Inc xxxvi Network and Security Manager Administration Guide...
Страница 52: ...Copyright 2010 Juniper Networks Inc 2 Network and Security Manager Administration Guide...
Страница 90: ...Copyright 2010 Juniper Networks Inc 40 Network and Security Manager Administration Guide...
Страница 144: ...Copyright 2010 Juniper Networks Inc 94 Network and Security Manager Administration Guide...
Страница 146: ...Copyright 2010 Juniper Networks Inc 96 Network and Security Manager Administration Guide...
Страница 234: ...Copyright 2010 Juniper Networks Inc 184 Network and Security Manager Administration Guide...
Страница 310: ...Copyright 2010 Juniper Networks Inc 260 Network and Security Manager Administration Guide...
Страница 364: ...Copyright 2010 Juniper Networks Inc 314 Network and Security Manager Administration Guide...
Страница 366: ...Copyright 2010 Juniper Networks Inc 316 Network and Security Manager Administration Guide...
Страница 478: ...Copyright 2010 Juniper Networks Inc 428 Network and Security Manager Administration Guide...
Страница 576: ...Copyright 2010 Juniper Networks Inc 526 Network and Security Manager Administration Guide...
Страница 580: ...Copyright 2010 Juniper Networks Inc 530 Network and Security Manager Administration Guide...
Страница 592: ...Copyright 2010 Juniper Networks Inc 542 Network and Security Manager Administration Guide...
Страница 684: ...Copyright 2010 Juniper Networks Inc 634 Network and Security Manager Administration Guide...
Страница 690: ...Copyright 2010 Juniper Networks Inc 640 Network and Security Manager Administration Guide...
Страница 696: ...Copyright 2010 Juniper Networks Inc 646 Network and Security Manager Administration Guide...
Страница 698: ...Copyright 2010 Juniper Networks Inc 648 Network and Security Manager Administration Guide...
Страница 748: ...Copyright 2010 Juniper Networks Inc 698 Network and Security Manager Administration Guide...
Страница 778: ...Copyright 2010 Juniper Networks Inc 728 Network and Security Manager Administration Guide...
Страница 870: ...Copyright 2010 Juniper Networks Inc 820 Network and Security Manager Administration Guide...
Страница 872: ...Copyright 2010 Juniper Networks Inc 822 Network and Security Manager Administration Guide...
Страница 898: ...Copyright 2010 Juniper Networks Inc 848 Network and Security Manager Administration Guide...
Страница 908: ...Copyright 2010 Juniper Networks Inc 858 Network and Security Manager Administration Guide...
Страница 910: ...Copyright 2010 Juniper Networks Inc 860 Network and Security Manager Administration Guide...
Страница 995: ...PART 6 Index Index on page 947 945 Copyright 2010 Juniper Networks Inc...
Страница 996: ...Copyright 2010 Juniper Networks Inc 946 Network and Security Manager Administration Guide...