]> git.ipfire.org Git - thirdparty/suricata-verify.git/commitdiff
tests/misc: fix README files
authorJuliana Fajardini <jufajardini@oisf.net>
Tue, 27 Jan 2026 12:45:57 +0000 (09:45 -0300)
committerJuliana Fajardini <jufajardini@oisf.net>
Wed, 4 Feb 2026 21:47:04 +0000 (18:47 -0300)
Some files that were missing redmine ticket reference, and/or had
partially wrong descriptions.

tests/droped-flow-applayer-event-logged-dcerpc/README.md
tests/droped-flow-applayer-event-logged-http/README.md
tests/droped-flow-applayer-event-logged-smb/README.md

index 8d9438881f9572d6a4fa30e197adefe1ab031a14..c5948da55aff44f75d925f85bf97790ea34b7a12 100644 (file)
@@ -5,10 +5,15 @@ It seems that Suricata will log an applayer event for a dropped flow, for the
 second packet of the flow. This test demonstrates such behavior, so we can
 investigate it.
 
-This test demonstrates this behavior with the SMB version 3 protocol.
+This test demonstrates this behavior with the DCERPC protocol.
 
 
 PCAP
 ====
 
-PCAP found on Wireshark Wiki.
+PCAP reused from existing test `dceprc-3109`.
+
+Ticket
+======
+
+https://redmine.openinfosecfoundation.org/issues/5510
index 7c1f235a05b30f54a720f5f92cc069b772940eed..d4f3859244fbb87b26d358b8a636a54fed0b8e99 100644 (file)
@@ -12,4 +12,9 @@ PCAP
 ====
 
 PCAP is the result of extracting the http packets from a pcap representing a
-curl to the www.testmyids.com site.
+curl to the www.testmyids.com site, reused from test exception-policy-midstream-06 - input-http-ACK.pcap .
+
+Ticket
+======
+
+https://redmine.openinfosecfoundation.org/issues/5510
index 8d9438881f9572d6a4fa30e197adefe1ab031a14..b7083994831e90071705c318a0117dba23e18d65 100644 (file)
@@ -12,3 +12,8 @@ PCAP
 ====
 
 PCAP found on Wireshark Wiki.
+
+Ticket
+======
+
+https://redmine.openinfosecfoundation.org/issues/5510