From 4bbbc326c60a8d31958d520ec3b6b6310473e7bc Mon Sep 17 00:00:00 2001 From: Gerald Combs Date: Sat, 6 Oct 2012 19:27:48 +0000 Subject: Reduce the contrast for many of the rules. Most of the color values were taken from http://emilis.info/other/extended_tango/ . svn path=/trunk/; revision=45350 --- colorfilters | 44 ++++++++++++++++++++++---------------------- 1 file changed, 22 insertions(+), 22 deletions(-) (limited to 'colorfilters') diff --git a/colorfilters b/colorfilters index b98b74ceb2..13d2f72e7a 100644 --- a/colorfilters +++ b/colorfilters @@ -1,24 +1,24 @@ # DO NOT EDIT THIS FILE! It was created by Wireshark -@Bad TCP@tcp.analysis.flags && !tcp.analysis.window_update@[0,0,0][65535,24383,24383] -@HSRP State Change@hsrp.state != 8 && hsrp.state != 16@[0,0,0][65535,63222,0] -@Spanning Tree Topology Change@stp.type == 0x80@[0,0,0][65535,63222,0] -@OSPF State Change@ospf.msg != 1@[0,0,0][65535,63222,0] -@ICMP errors@icmp.type eq 3 || icmp.type eq 4 || icmp.type eq 5 || icmp.type eq 11 || icmpv6.type eq 1 || icmpv6.type eq 2 || icmpv6.type eq 3 || icmpv6.type eq 4@[0,0,0][0,65535,3616] -@ARP@arp@[55011,59486,65534][0,0,0] -@ICMP@icmp || icmpv6@[49680,49737,65535][0,0,0] -@TCP RST@tcp.flags.reset eq 1@[37008,0,0][65535,63121,32911] -@SCTP ABORT@sctp.chunk_type eq ABORT@[37008,0,0][65535,63121,32911] -@TTL low or unexpected@( ! ip.dst == 224.0.0.0/4 && ip.ttl < 5 && !pim) || (ip.dst == 224.0.0.0/24 && ip.ttl != 1)@[37008,0,0][65535,65535,65535] -@Checksum Errors@eth.fcs_bad==1 || ip.checksum_bad==1 || tcp.checksum_bad==1 || udp.checksum_bad==1 || sctp.checksum_bad==1 || mstp.checksum_bad==1 || cdp.checksum_bad==1 || edp.checksum_bad==1@[0,0,0][65535,24383,24383] -@SMB@smb || nbss || nbns || nbipx || ipxsap || netbios@[65534,64008,39339][0,0,0] -@HTTP@http || tcp.port == 80@[36107,65535,32590][0,0,0] -@IPX@ipx || spx@[65534,58325,58808][0,0,0] -@DCERPC@dcerpc@[51199,38706,65533][0,0,0] -@Routing@hsrp || eigrp || ospf || bgp || cdp || vrrp || gvrp || igmp || ismp@[65534,62325,54808][0,0,0] -@TCP SYN/FIN@tcp.flags & 0x02 || tcp.flags.fin == 1@[41026,41026,41026][0,0,0] -@TCP@tcp@[59345,58980,65534][0,0,0] -@UDP@udp@[28834,57427,65533][0,0,0] -@Broadcast@eth[0] & 1@[65535,65535,65535][32768,32768,32768] +@Bad TCP@tcp.analysis.flags && !tcp.analysis.window_update@[11822,13364,13878][63479,34695,34695] +@HSRP State Change@hsrp.state != 8 && hsrp.state != 16@[11822,13364,13878][65535,64764,40092] +@Spanning Tree Topology Change@stp.type == 0x80@[11822,13364,13878][65535,64764,40092] +@OSPF State Change@ospf.msg != 1@[11822,13364,13878][65535,64764,40092] +@ICMP errors@icmp.type eq 3 || icmp.type eq 4 || icmp.type eq 5 || icmp.type eq 11 || icmpv6.type eq 1 || icmpv6.type eq 2 || icmpv6.type eq 3 || icmpv6.type eq 4@[11822,13364,13878][47031,63479,29812] +@ARP@arp@[56026,61166,65535][11822,13364,13878] +@ICMP@icmp || icmpv6@[64764,57568,65535][11822,13364,13878] +@TCP RST@tcp.flags.reset eq 1@[42148,0,0][65535,64764,40092] +@SCTP ABORT@sctp.chunk_type eq ABORT@[42148,0,0][65535,64764,40092] +@TTL low or unexpected@( ! ip.dst == 224.0.0.0/4 && ip.ttl < 5 && !pim) || (ip.dst == 224.0.0.0/24 && ip.ttl != 1)@[42148,0,0][60652,61680,60395] +@Checksum Errors@eth.fcs_bad==1 || ip.checksum_bad==1 || tcp.checksum_bad==1 || udp.checksum_bad==1 || sctp.checksum_bad==1 || mstp.checksum_bad==1 || cdp.checksum_bad==1 || edp.checksum_bad==1@[11822,13364,13878][63479,34695,34695] +@SMB@smb || nbss || nbns || nbipx || ipxsap || netbios@[65278,65535,53456][11822,13364,13878] +@HTTP@http || tcp.port == 80@[58596,65535,51143][11822,13364,13878] +@IPX@ipx || spx@[65534,58325,58808][11822,13364,13878] +@DCERPC@dcerpc@[51199,38706,65533][11822,13364,13878] +@Routing@hsrp || eigrp || ospf || bgp || cdp || vrrp || gvrp || igmp || ismp@[65534,62325,54808][11822,13364,13878] +@TCP SYN/FIN@tcp.flags & 0x02 || tcp.flags.fin == 1@[41026,41026,41026][11822,13364,13878] +@TCP@tcp@[38807,50372,61680][11822,13364,13878] +@UDP@udp@[38807,61166,61680][11822,13364,13878] +@Broadcast@eth[0] & 1@[65535,65535,65535][47802,48573,46774] # Bluetooth # For Bluetooth each color is assigned to dissector, @@ -34,7 +34,7 @@ @HFP@bthfp@[57840,49413,65535][5111,4915,4652] @RFCOMM@btrfcomm@[64249,44202,25136][5111,4915,4652] @SDP@btsdp@[34255,42642,22057][5111,4915,4652] -@L2CAP@btl2cap@[58215,49541,23520][0,0,0] +@L2CAP@btl2cap@[58215,49541,23520][11822,13364,13878] @SCO@bthci_sco@[65535,28803,61093][5111,4915,4652] @HCI_EVT@bthci_evt@[47126,60905,65535][5111,4915,4652] -@HCI_CMD@bthci_cmd@[18901,48590,65535][0,0,0] \ No newline at end of file +@HCI_CMD@bthci_cmd@[18901,48590,65535][11822,13364,13878] \ No newline at end of file -- cgit v1.2.3