-
Notifications
You must be signed in to change notification settings - Fork 268
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
how to identify utp #131
Comments
At what level do you want to identify it?
I realize that the rule may seem cryptic due to the usage of u32 kernel module. |
Thank you for your answer. I want to identify and parse utp packets in my firewall. Can other types of UTP packets be identified except for UTP SYN? |
You can identify the FIN (1) and RST (3) packets by similar rule functionality because the length of the UTP packet in these cases is always 20 bytes. I can't think of an easy way to recognize all of the UTP packets without some additional logic which tracks their connection ids and their lifetime. |
Thanks again for your answer! |
How to identify utp packets? Are there any features?
The text was updated successfully, but these errors were encountered: