Skip to content

Integration scripts for SniffCat & AbuseIPDB.

Notifications You must be signed in to change notification settings

sefinek/IPDB-Integration-Scripts

Repository files navigation

Integration Scripts

Supported Services

Used for

SniffCat AbuseIPDB SpamVerify
UFW UFW-SniffCat-Reporter UFW-AbuseIPDB-Reporter UFW-SpamVerify-Reporter
Cloudflare Cloudflare-WAF-To-SniffCat Cloudflare-WAF-To-AbuseIPDB
T-Pot T-Pot-To-SniffCat T-Pot-To-AbuseIPDB
Suricata Soon Suricata-To-AbuseIPDB

Terms

Key Description
timestamp Event timestamp (UTC format)
srcIp Source IP address (attacker)
dstIp Destination IP address (victim/server)
proto Protocol used (e.g., TCP, SSH, TELNET, MONGOD)
spt Source port number
dpt Destination port number
in Incoming network interface name (e.g., enp1s0, ens3)
out Outgoing network interface name
mac MAC address information
len Total packet length (in bytes)
ttl Packet TTL (Time To Live)
id Packet ID
tos Type of Service field in IP header
prec Precedence value in TOS field
window TCP window size
urgp TCP urgent pointer

About

Integration scripts for SniffCat & AbuseIPDB.

Topics

Resources

Stars

Watchers

Forks

Contributors 2

  •  
  •