Isticmaalka qaab midaysan si aad u muujiso natiijooyinka iskaanka Midaysan2, sidoo kale loo isticmaalo mashruuca Snort, kaas oo u oggolaanaya isticmaalka qalabka falanqaynta caadiga ah sida barnadii2. Suurtagalnimada isdhexgalka BASE, Snorby, Sguil iyo SQueRT. Taageerada wax soo saarka PCAP;
Taageerada ogaanshaha tooska ah ee borotokoolka (IP, TCP, UDP, ICMP, HTTP, TLS, FTP, SMB, iwm.), taasoo kuu oggolaanaysa inaad ku shaqeyso qawaaniinta kaliya nooca borotokoolka, iyada oo aan loo tixraacin lambarka dekedda (tusaale, xannibo HTTP taraafikada dekedda aan caadiga ahayn) . Helitaanka decoders HTTP, SSL, TLS, SMB, SMB2, DCERPC, SMTP, FTP iyo borotokoolka SSH;
Nidaam xoog leh oo falanqaynta taraafikada HTTP oo isticmaala maktabad gaar ah oo HTP ah oo uu sameeyay qoraaga mashruuca Mod_Security si uu u kala saaro oo caadi uga dhigo taraafikada HTTP. Qayb ayaa diyaar u ah ilaalinta diiwaanka tafaasiisha HTTP ee wareejinta; galku waxa uu u kaydsan yahay qaab caadi ah
Apache Soo celinta iyo hubinta faylasha lagu gudbiyo HTTP waa la taageeray. Taageerada kala saarista waxyaabaha la isku cadeeyey. Awoodda lagu aqoonsan karo URI, Kukiyada, madax-madaxeedyada, wakiilka isticmaalaha, codsiga/jirka jawaabta;
Taageerada is-dhexgalyada kala duwan ee ka-hortagga taraafikada, oo ay ku jiraan NFQueue, IPFRing, LibPcap, IPFW, AF_PACKET, PF_RING. Waa suurtagal in lagu falanqeeyo faylalka horay loo keydiyay oo qaab PCAP ah;
Qaabka u dhigma maaskarada waxqabadka sare leh ee xirmooyin badan oo cinwaanada IP ah. Taageerada xulashada nuxurka waji-xidhka iyo tibaaxaha caadiga ah. Ka-soocida feylasha taraafikada, oo ay ku jirto aqoonsigooda magac ahaan, nooca ama MD5 checksum.
Awoodda isticmaalka doorsoomayaasha xeerarka: waxaad kaydin kartaa macluumaadka durdur ka dibna u isticmaal xeerar kale;
Isticmaalka qaabka YAML ee faylasha qaabeynta, kaas oo kuu ogolaanaya inaad ilaaliso caddayn inta aad si fudud u shaqeyneyso mashiinka;
IPV6 taageero buuxda;
Matoorka lagu dhex dhisay si toos ah u jajabinta iyo dib-u-ururinta baakadaha, u oggolaanaya habaynta saxda ah ee durdurrada, iyada oo aan loo eegin nidaamka ay baakidhyadu yimaadaan;
Habka gelitaanka furayaasha iyo shahaadooyinka ka dhex muuqda xidhiidhada TLS/SSL;
Awoodda qorista qoraallada Lua si ay u bixiso falanqayn horumarsan oo ay hirgeliso awoodo dheeraad ah oo loo baahan yahay si loo aqoonsado noocyada taraafikada ee xeerarka caadiga ahi aanay ku filnayn.