zeek/testing/btest/Baseline/scripts.policy.protocols.conn.known-services/knownservices-local.log
Robin Sommer 1fd0d7a607 Changing the start/end markers in logs to open/close now reflecting
wall clock.

Triggers lots of (simple) baseline updates.
2012-07-27 12:15:21 -07:00

12 lines
361 B
Text

#separator \x09
#set_separator ,
#empty_field (empty)
#unset_field -
#path known_services
#open 2011-06-24-15-51-31
#fields ts host port_num port_proto service
#types time addr port enum table[string]
1308930691.049431 172.16.238.131 22 tcp SSH
1308930694.550308 172.16.238.131 80 tcp HTTP
1308930718.361665 172.16.238.131 21 tcp FTP
#close 2011-06-24-15-52-08