Hello,
Where can I find out how specifically the Cisco Secure Firewall/ Firepower engine detects specific applications in network traffic.
I understand they are applications which are detected in different ways, one way for example ASCII patterns in the packet header.
Is there a record/list somewhere of these patterns?
I would like to understand this more, and compare this to any PCAP's and also would aid in creating custom application detectors down the line.
I would have though you should be able to get this from https://appid.cisco.com/home.
Any help here would be hugly appreciated !