[Oisf-users] Dropped Traffic Help

Phil Daws uxbod at splatnix.net
Thu Nov 2 10:53:46 UTC 2017


Good day, 

I am trying to run a task on my Wordpress site but it keeps failing and was unsure why. Have looked at my Suricata eve.json file and see the following: 

{"timestamp":"2017-11-02T10:45:00.965916+0000","flow_id":140715104969808,"event_type":"drop","src_ip":"192.168.1.56","src_port":53176,"dest_ip":"69.46.36.28","dest_port":443,"proto":"TCP","drop":{"len":266,"tos":0,"ttl":63,"ipid":32780,"tcpseq":3070513294,"tcpack":2284897518,"tcpwin":115,"syn":false,"ack":true,"psh":true,"rst":false,"urg":false,"fin":false,"tcpres":0,"tcpurgp":0}} 

What is this message telling me about the drop as no rule is being shown ? 

Thanks - Phil 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20171102/f971d1be/attachment.html>


More information about the Oisf-users mailing list