<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Creating a custom fingerprint with IP as server in Analytics &amp; Visibility</title>
    <link>https://community.extremenetworks.com/t5/analytics-visibility/creating-a-custom-fingerprint-with-ip-as-server/m-p/93394#M155</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;Trying to create a new analytics fingerprint where it will classify flows based on the IP being the server in the flow. In my testing now, it seems that it will classify the flow as the new custom fingerprint regardless if it's client or server.&lt;/P&gt;&lt;P&gt;Thanks for any help,&lt;/P&gt;</description>
    <pubDate>Mon, 17 Oct 2022 19:22:12 GMT</pubDate>
    <dc:creator>Chad5</dc:creator>
    <dc:date>2022-10-17T19:22:12Z</dc:date>
    <item>
      <title>Creating a custom fingerprint with IP as server</title>
      <link>https://community.extremenetworks.com/t5/analytics-visibility/creating-a-custom-fingerprint-with-ip-as-server/m-p/93394#M155</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;Trying to create a new analytics fingerprint where it will classify flows based on the IP being the server in the flow. In my testing now, it seems that it will classify the flow as the new custom fingerprint regardless if it's client or server.&lt;/P&gt;&lt;P&gt;Thanks for any help,&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 19:22:12 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/analytics-visibility/creating-a-custom-fingerprint-with-ip-as-server/m-p/93394#M155</guid>
      <dc:creator>Chad5</dc:creator>
      <dc:date>2022-10-17T19:22:12Z</dc:date>
    </item>
    <item>
      <title>Re: Creating a custom fingerprint with IP as server</title>
      <link>https://community.extremenetworks.com/t5/analytics-visibility/creating-a-custom-fingerprint-with-ip-as-server/m-p/93518#M156</link>
      <description>&lt;P&gt;Hi Chad&lt;/P&gt;&lt;P&gt;here is an example of the signature that should do the similar task to what you want:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;  &amp;lt;Signature protocol="tcp" name="APP:MY-TEST" confidence="30" group="streaming" onAP="yes" createdDate="2013101100" modifiedDate="2013101100"&amp;gt;
    &amp;lt;AppID&amp;gt;99999&amp;lt;/AppID&amp;gt;
    &amp;lt;DisplayName value="MY-TEST"/&amp;gt;
    &amp;lt;ExtendedLanguage dst-ip="12.34.56.0" dst-mask="22"&amp;gt;
        &amp;lt;/ExtendedLanguage&amp;gt;
    &amp;lt;Description&amp;gt;&amp;lt;![CDATA[This fingerprint looks for IP traffic in the 12.34.56/22 range]]&amp;gt;&amp;lt;/Description&amp;gt;
    &amp;lt;Enabled value="yes"/&amp;gt;
  &amp;lt;/Signature&amp;gt;&lt;/LI-CODE&gt;&lt;P&gt;You should:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Backup your configuration&lt;/LI&gt;&lt;LI&gt;Create new fingerprint by GUI&lt;/LI&gt;&lt;LI&gt;Investigate the APPID of your fingerprint&lt;/LI&gt;&lt;LI&gt;Hold CTRL while clicking on the hamburger menu and select "Create Fingerprint from XML..."&lt;/LI&gt;&lt;LI&gt;Then insert your XML based fingerprint.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;Be aware this is not an officially supported procedure = you can crash your system if you insert garbage&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Oct 2022 13:58:58 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/analytics-visibility/creating-a-custom-fingerprint-with-ip-as-server/m-p/93518#M156</guid>
      <dc:creator>Zdeněk_Pala</dc:creator>
      <dc:date>2022-10-25T13:58:58Z</dc:date>
    </item>
  </channel>
</rss>

