Research Article

Fingerprinting Network Entities Based on Traffic Analysis in High-Speed Network Environment

Box 1

alert udp $EXTERNAL_NET any -> $HOME_NET any
(msg:snmp; content:; offset:0; depth:1;
byte_test:1,<,0x80,1; content:; offset:2; depth:1;
sid:70; rev:1;)