UNSPECIFIED-ENCRYPTED

High Entropy is a virtual protocol used to detect potentially encrypted payloads. Important note: the classification of this layer is effective since the 4.18.0 version of the ixEngine framework. The classification is based on two methods: entropy value computation, and printable strings detection. This concerns only unknown sessions over TCP and UDP.

Short Name
UNSPECIFIED-ENCRYPTED
Category
Infrastructure
SubCategory
Encryption
Risk
5
Release Date
2013-08-14
Supported Platforms

Available to all SRX running 12.3X48+

Available to all MX running 20.2R1+

Available to all vSRX running 20.3R1+

Port
TCP/80,UDP/443,TCP/53,TCP/587,UDP/135,TCP/25,UDP/1900,TCP/1434,TCP/20,TCP/102,TCP/543,TCP/465,TCP/22,TCP/5060,TCP/995,TCP/135,TCP/5445,TCP/993,TCP/443,TCP/119,TCP/445,TCP/3386,TCP/1433,TCP/8000,TCP/434,UDP/554,UDP/500,TCP/139,UDP/4500,UDP/53,UDP/5060,TCP/21,UDP/3386,TCP/3128,UDP/80,TCP/5190,UDP/3544,TCP/1080,TCP/8080,UDP/5246-5247,UDP/88,TCP/554
Application Group
junos-approot:applications:basic

Found a potential security threat?