From: Victor Julien Date: Thu, 28 Nov 2024 10:41:16 +0000 (+0100) Subject: tests: update firewall test for pkt sigs not alerting on ffr packets X-Git-Tag: suricata-7.0.8~8 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=f9717f5213cffe0a5e669c71a6522d3cf8f68097;p=thirdparty%2Fsuricata-verify.git tests: update firewall test for pkt sigs not alerting on ffr packets --- diff --git a/tests/firewall/firewall-06-tls-sni-enforce/test.yaml b/tests/firewall/firewall-06-tls-sni-enforce/test.yaml index b61b85c40..7002fd186 100644 --- a/tests/firewall/firewall-06-tls-sni-enforce/test.yaml +++ b/tests/firewall/firewall-06-tls-sni-enforce/test.yaml @@ -6,11 +6,24 @@ args: checks: - filter: + min-version: 8 + count: 24 + match: + event_type: alert + alert.signature_id: 3 +- filter: + min-version: 8 + count: 24 + match: + event_type: alert +- filter: + lt-version: 7 count: 26 match: event_type: alert alert.signature_id: 3 - filter: + lt-version: 7 count: 26 match: event_type: alert @@ -39,6 +52,13 @@ checks: match: event_type: drop - filter: + min-version: 8 + count: 0 + match: + event_type: alert + pkt_src: "stream (flow timeout)" +- filter: + lt-version: 7 count: 2 match: event_type: alert