signed-in-range — True if the value obtained from the network traffic falls within the specified signed range
unsigned-in-range — True if the value obtained from the network traffic falls within the specified unsigned range
Tip
Trellix recommends using an in-range test as it is more efficient than -gt and --lt tests.
Numeric range test parameters
Parameter | Description |
|---|---|
Protocol Field | The field that will be tested for equality with the supplied value |
Minimum Value | Minimum value of the comparison range (Inclusive) |
Maximum Value | Maximum value of the comparison range (Inclusive) Note that the Minimum Value and Maximum Value fields do not support floating point values. |