inigoperona / tcpdump2gureKDDCup99

Creates a KDDCup99 format databse from traffic sniffed with tcpdump
33 stars 11 forks source link

How to get service attribute? #5

Open igstbagusdharmaputra opened 4 years ago

igstbagusdharmaputra commented 4 years ago

How can I transform tcpdump data on KDDCup99 format?

TCP eta UDPrako

function service_name(p: port): string

{

Erantzuten duen konexioaren zerbitzu izena itzultzen du (http,ftp,...)

if ( p in port_names ) return port_names[p]; else{ if ((49152/tcp<=p && p<=65535/tcp) || (49152/udp<=p && p<=65535/udp)) return "private"; else return "other"; }

}

https://github.com/inigoperona/tcpdump2gureKDDCup99/blob/master/darpa2gurekddcup.bro How to active function? and i can to get data service