]> git.ipfire.org Git - thirdparty/suricata-verify.git/commitdiff
tests: test midstream w midstream exception policy
authorJuliana Fajardini <jufajardini@oisf.net>
Thu, 19 Jan 2023 14:58:10 +0000 (11:58 -0300)
committerJason Ish <jason.ish@oisf.net>
Tue, 31 Jan 2023 21:33:19 +0000 (15:33 -0600)
Related to
Bug #5765

tests/bug-2491-02/suricata.yaml [new file with mode: 0644]
tests/bug-2491-02/test.yaml

diff --git a/tests/bug-2491-02/suricata.yaml b/tests/bug-2491-02/suricata.yaml
new file mode 100644 (file)
index 0000000..06fe181
--- /dev/null
@@ -0,0 +1,22 @@
+%YAML 1.1
+---
+
+outputs:
+  - eve-log:
+      enabled: yes
+      filetype: regular #regular|syslog|unix_dgram|unix_stream|redis
+      filename: eve.json
+      types:
+        - alert:
+            payload: yes
+            payload-buffer-size: 4kb
+            payload-printable: yes
+            packet: yes
+            http: yes
+        - flow
+        - http
+        - drop:
+            alerts: yes
+            flows: all
+        - stats
+
index 370182f3558a9c620dfb8b1f300d7b68fbf8590e..d403ee8ae6a27957ac906ea0e566feb6f614c6e2 100644 (file)
@@ -4,6 +4,7 @@ requires:
 args:
 - --set stream.async-oneside=true
 - --set stream.midstream=true
+- --set stream.midstream-policy=drop-flow
 
 checks:
   - filter: