Table 8.4
Few IDS alert fieldsÂ’ descriptions.
VariableDescription
timestampTimestamp of the alarm
pkt_numPacket number
pkt_lenLength of the packet
dirDirection of the traffic (e.g., "S2C" for server-to-client, "C2S" for client-to-server)
protoTransport layer protocol of the risky packet.
src_addrsource IP address
src_portsource port number
dst_addrdestination IP address
dst_portdestination port number
ruleAdditional information to include in the alarm.
prioritypriority associated with the detection rule
classthe classification type of the event
actionthe action taken (e.g., allowed, blocked, etc.)

or Create an Account

Close Modal
Close Modal