|
Feature | Description | Data type | Feature | Description | Data type |
|
pkSeqID | Row identifier | Integer | Dpkts | Destination-to-source packet count | Integer |
stime | Record start time | Float | Sbytes | Source-to-destination byte count | Integer |
flgs | Flow state flags seen in transactions | Category | Dbytes | Destination-to-source byte count | Integer |
proto | Textual representation of transaction protocols presents in network flow | Category | Rate | Total packets per second in transaction | Float |
Saddr | Source IP address | Category | Srate | Source-to-destination packets per second | Float |
Sport | Source port number | Category | Drate | Destination-to-source packets per second | Float |
Daddr | Destination IP address | Category | TnBPSrcIP | Total number of bytes per source IP | Integer |
Dport | Destination port number | Category | TnBPDstIP | Total number of bytes per destination IP. | Integer |
Pkts | Total count of packets in transaction | Integer | TnP_PSrcIP | Total number of packets per source IP. | Integer |
Bytes | Total number of bytes in transaction | Integer | TnP_PDstIP | Total number of packets per destination IP. | Integer |
State | Transaction state | Category | TnP_PerProto | Total number of packets per protocol. | Integer |
Ltime | Record last time | Float | TnP_Per_Dport | Total number of packets per dport | Integer |
Seq | Argus sequence number | Integer | AR_P_Proto_P_SrcIP | Average rate per protocol per source IP. (calculated by pkts/dur) | Float |
Dur | Record total duration | Float | AR_P_Proto_P_DstIP | Average rate per protocol per destination IP. | Float |
Mean | Average duration of aggregated records | Float | N_IN_Conn_P_SrcIP | Number of inbound connections per source IP. | Integer |
Stddev | Standard deviation of aggregated records | Float | N_IN_Conn_P_DstIP | Number of inbound connections per destination IP. | Integer |
Sum | Total duration of aggregated records | Float | AR_P_Proto_P_Sport | Average rate per protocol per sport | Float |
Min | Minimum duration of aggregated records | Float | AR_P_Proto_P_Dport | Average rate per protocol per dport | Float |
Max | Maximum duration of aggregated records | Float | Pkts_P_State_P_Protocol_P_SrcIP | Number of packets grouped by state of flows and protocols per source IP. | Integer |
Spkts | Source-to-destination packet count | Integer | Pkts_P_State_P_Protocol_P_DestIP | Number of packets grouped by state of flows and protocols per destination IP | Integer |
|