From: Modupe Falodun Date: Tue, 1 Feb 2022 21:56:43 +0000 (+0100) Subject: detect-engine-enip: add unittest X-Git-Tag: suricata-6.0.5~14 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=a174476b368e158bde85f8fd21c828e32efb3bf6;p=thirdparty%2Fsuricata-verify.git detect-engine-enip: add unittest Task: 4911 --- diff --git a/tests/enip-keywords/test.rules b/tests/enip-keywords/test.rules index 8892e1cae..c30752950 100644 --- a/tests/enip-keywords/test.rules +++ b/tests/enip-keywords/test.rules @@ -1,2 +1,3 @@ alert ip any any -> any any (cip_service: 10; sid:1; ) alert ip any any -> any any (enip_command: 112; sid:2; ) +alert enip any any -> any any (msg:"Testing enip command"; enip_command:99 ; sid:3;) diff --git a/tests/enip-keywords/test.yaml b/tests/enip-keywords/test.yaml index 0b9a09800..af188cda7 100644 --- a/tests/enip-keywords/test.yaml +++ b/tests/enip-keywords/test.yaml @@ -16,3 +16,8 @@ checks: match: event_type: alert alert.signature_id: 2 + - filter: + count: 2 + match: + event_type: alert + alert.signature_id: 3