Files
cve-dashboard/docs/operations/card-prod-firewall-traffic-log.log

113 lines
3.9 KiB
Plaintext
Raw Permalink Normal View History

==========================================================================
CARD Production API — Firewall Exception Traffic Log
==========================================================================
Generated: 2026-04-30T16:38:50Z
Source Host: dashboard-dev (71.85.90.9)
Destination: card.charter.com
Purpose: Generate logged traffic for Archer firewall exception request
Each attempt below creates a TCP SYN packet from this server to
card.charter.com. These will appear in firewall deny logs as
dropped/rejected connections from 71.85.90.9.
==========================================================================
--- DNS Resolution ---
Timestamp: 2026-04-30T16:38:51Z
;; communications error to 71.85.90.1#53: connection refused
;; communications error to 71.85.90.1#53: connection refused
;; communications error to 71.85.90.1#53: connection refused
Server: 8.8.4.4
Address: 8.8.4.4#53
Non-authoritative answer:
card.charter.com canonical name = card.g.charter.com.
Name: card.g.charter.com
Address: 47.43.44.7
;; communications error to 71.85.90.1#53: connection refused
;; communications error to 71.85.90.1#53: connection refused
;; communications error to 71.85.90.1#53: connection refused
Name: card.g.charter.com
Address: 2600:6c7f:9330:ca5::7
==========================================================================
ATTEMPT 1: HTTPS (TCP/443) — Primary API endpoint
==========================================================================
Timestamp: 2026-04-30T16:38:51Z
Source: 71.85.90.9
Destination: card.charter.com (47.43.51.7)
Port: 443/TCP
Protocol: HTTPS (TLS 1.2+)
Path: POST /api/v1/auth/get_token
Auth: Basic Auth (service account: svc-jira-cn-projects)
==========================================================================
ATTEMPT 2: HTTPS (TCP/443) — Teams list endpoint
==========================================================================
Timestamp: 2026-04-30T16:39:04Z
Source: 71.85.90.9
Destination: card.charter.com (47.43.51.7)
Port: 443/TCP
Protocol: HTTPS (TLS 1.2+)
Path: GET /api/v1/teams
==========================================================================
ATTEMPT 3: HTTPS (TCP/443) — Owner lookup endpoint
==========================================================================
Timestamp: 2026-04-30T16:39:17Z
Source: 71.85.90.9
Destination: card.charter.com (47.43.51.7)
Port: 443/TCP
Protocol: HTTPS (TLS 1.2+)
Path: GET /api/v1/owner/10.240.78.110-CTEC
==========================================================================
ATTEMPT 4: HTTPS (TCP/443) — Team assets endpoint
==========================================================================
Timestamp: 2026-04-30T16:39:30Z
Source: 71.85.90.9
Destination: card.charter.com (47.43.51.7)
Port: 443/TCP
Protocol: HTTPS (TLS 1.2+)
Path: GET /api/v1/team/NTS-AEO-STEAM/assets?disposition=confirmed
==========================================================================
ATTEMPT 5: HTTPS (TCP/443) — Confirm mutation endpoint
==========================================================================
Timestamp: 2026-04-30T16:39:43Z
Source: 71.85.90.9
Destination: card.charter.com (47.43.51.7)
Port: 443/TCP
Protocol: HTTPS (TLS 1.2+)
Path: POST /api/v2/owner/{assetId}/confirm
==========================================================================
CONTROL: CARD UAT — Same endpoints, same server, WORKS
==========================================================================
Timestamp: 2026-04-30T16:39:54Z
Source: 71.85.90.9
Destination: card.caas.stage.charterlab.com (65.185.232.89)
Port: 443/TCP
HTTP Status: 401
Connect Time: 0.090618s
Total Time: 0.211382s
Remote IP: 65.185.232.89
Result: CONNECTED SUCCESSFULLY
==========================================================================
END OF TRAFFIC LOG
==========================================================================