]>
git.ipfire.org Git - thirdparty/suricata-verify.git/log
Jeff Lucovsky [Sat, 28 Dec 2019 18:23:27 +0000 (13:23 -0500)]
decode: ERSPAN Type I packet parsing
Eric Leblond [Tue, 19 Nov 2019 17:06:08 +0000 (18:06 +0100)]
bpf-command-line: add test for bug 3346
Jason Ish [Thu, 9 Jan 2020 22:52:55 +0000 (16:52 -0600)]
dns test fix: only include relevant rules
Remove app-layer dns rules for events not relevant to
test as some of them are scheduled for removal.
Also convert check.sh to test.yaml.
Victor Julien [Wed, 11 Dec 2019 20:40:36 +0000 (21:40 +0100)]
bug-130: update for changed detection logic
Victor Julien [Wed, 11 Dec 2019 10:05:03 +0000 (11:05 +0100)]
http: test for body inspection corner case
Jason Ish [Mon, 9 Dec 2019 22:06:12 +0000 (16:06 -0600)]
fixup: HAVE_RUST should be just RUST
Andreas Herz [Mon, 1 Jul 2019 20:21:31 +0000 (22:21 +0200)]
tests: add mix of byte_extract tests
Victor Julien [Tue, 3 Dec 2019 07:13:36 +0000 (08:13 +0100)]
tests: fix missing HAVE_RUST declarations
Victor Julien [Wed, 20 Nov 2019 18:19:51 +0000 (19:19 +0100)]
tests: fixes for bug 130
Version check failed and windows failed to match.
Giuseppe Longo [Wed, 20 Nov 2019 10:50:36 +0000 (11:50 +0100)]
tests: fix sip tests
The correct numbers of alerts logged is not correct and OISF/suricata#4330
fixes this issue, so this commit fixes tests that are broken.
Jason Ish [Wed, 20 Nov 2019 21:49:18 +0000 (15:49 -0600)]
test: dhcp request flood test
Tests that a DHCP request flood doesn't take an excessive amount
of time.
Skipped by default.
Related ticket #3345:
https://redmine.openinfosecfoundation.org/issues/3345
Jason Ish [Wed, 20 Nov 2019 21:45:05 +0000 (15:45 -0600)]
run: fix --force to force running of skipped tests
Jason Ish [Wed, 20 Nov 2019 21:44:42 +0000 (15:44 -0600)]
All skip to be a boolean, for easy skip by default.
Jason Ish [Wed, 20 Nov 2019 21:36:56 +0000 (15:36 -0600)]
run: allow an empty test.yaml
On an empty test.yaml, make sure the config object is an
empty dict, and not None.
Jason Ish [Wed, 20 Nov 2019 18:17:24 +0000 (12:17 -0600)]
run: use 0 for undefined versioned components
Fix the version parser to use 0 for undefined version
components instead of None to support looser version
specifications:
5 => 5.0.0
5.1 => 5.1.0
5.1.1 => 5.1.1
Jason Ish [Wed, 13 Nov 2019 22:46:13 +0000 (16:46 -0600)]
bug-130: min-version 5.0
Shivani Bhardwaj [Sun, 30 Jun 2019 06:53:07 +0000 (12:23 +0530)]
Add tests for #130: content + nocase issue
Closes redmine ticket #3057.
Jason Ish [Wed, 13 Nov 2019 22:27:41 +0000 (16:27 -0600)]
base64 tests: update to work on 4.1
Eric Leblond [Sun, 13 Oct 2019 10:19:28 +0000 (12:19 +0200)]
base64: add basic tests
Jason Ish [Wed, 13 Nov 2019 17:32:49 +0000 (11:32 -0600)]
eve/dns: test eve/dns filtering
To confirm ticket:
https://redmine.openinfosecfoundation.org/issues/3231
Victor Julien [Thu, 7 Nov 2019 09:27:34 +0000 (10:27 +0100)]
tests: add bug 3277 nfsv2+filestore test
Victor Julien [Thu, 7 Nov 2019 09:23:31 +0000 (10:23 +0100)]
tests: add empty TCP SACK test
Victor Julien [Sat, 2 Nov 2019 15:23:45 +0000 (16:23 +0100)]
tests: add check for rdp support to rdp test
Andreas Herz [Tue, 29 Oct 2019 10:54:00 +0000 (11:54 +0100)]
tests: add rdp parser test
Jason Ish [Tue, 1 Oct 2019 21:39:28 +0000 (15:39 -0600)]
run: handle moved classificaton/reference config
First look for these configuration files in ./etc, then in the
top directory to handle the change of location in Suricata 5.0,
as well as work with older versions.
Victor Julien [Sat, 5 Oct 2019 09:27:01 +0000 (11:27 +0200)]
tests/datasets: set requirements
Victor Julien [Sat, 5 Oct 2019 08:51:18 +0000 (10:51 +0200)]
tests/datasets: fix path hanlding in isnotset test
Jason Ish [Thu, 3 Oct 2019 22:34:16 +0000 (16:34 -0600)]
test: dataset state isnotset test
The idea with this test is to alert on the first time something
is seen in a state type dataset.
Philippe Antoine [Mon, 4 Mar 2019 16:27:57 +0000 (17:27 +0100)]
Adds a testcase for HTTP multiple content-length
Philippe Antoine [Tue, 5 Mar 2019 13:09:05 +0000 (14:09 +0100)]
Adds a testcase for http invalid request line
Victor Julien [Fri, 20 Sep 2019 06:42:58 +0000 (08:42 +0200)]
tests/evader: rename 116 to indicate its about lzma
Victor Julien [Fri, 20 Sep 2019 06:38:32 +0000 (08:38 +0200)]
tests: make sure lzma is enabled in evader test
Andreas Herz [Wed, 21 Aug 2019 20:04:20 +0000 (22:04 +0200)]
tests: add test case for file_data depth inspection
Jason Ish [Mon, 16 Sep 2019 22:28:47 +0000 (16:28 -0600)]
dns-opcode: test dns.opcode keyword
Jason Ish [Mon, 16 Sep 2019 23:05:19 +0000 (17:05 -0600)]
sip: enable sip for sip tests
Giuseppe Longo [Thu, 11 Jul 2019 14:19:49 +0000 (16:19 +0200)]
tests: add tests for sip keywords
Giuseppe Longo [Wed, 10 Apr 2019 20:17:09 +0000 (22:17 +0200)]
file-store: add tests for stream-depth
Jason Ish [Mon, 22 Apr 2019 17:35:00 +0000 (11:35 -0600)]
tests: dns midstream reversed tests for tcp and udp
Victor Julien [Tue, 11 Jun 2019 17:23:47 +0000 (19:23 +0200)]
tests: add testmyids variant with midstream
Victor Julien [Fri, 13 Sep 2019 08:42:42 +0000 (10:42 +0200)]
tests: set proper requirements for dotprefix tests
Philippe Antoine [Tue, 2 Apr 2019 09:13:36 +0000 (11:13 +0200)]
Adds test case for http with missing protocol
And header_names keyword in rules
Jeff Lucovsky [Mon, 22 Jul 2019 22:39:22 +0000 (18:39 -0400)]
tests: convert dotprefix test type to pcap
Jeff Lucovsky [Sun, 14 Jul 2019 18:52:09 +0000 (14:52 -0400)]
tests: add test for dotprefix transform
Jeff Lucovsky [Tue, 13 Aug 2019 14:59:02 +0000 (10:59 -0400)]
tests: Update anomaly logging to use new config
Victor Julien [Thu, 5 Sep 2019 12:53:55 +0000 (14:53 +0200)]
run: pass OUTPUT_DIR to check.sh
Victor Julien [Fri, 12 Jul 2019 18:43:16 +0000 (20:43 +0200)]
tests: add datasets tests
Shivani Bhardwaj [Thu, 5 Sep 2019 11:43:17 +0000 (17:13 +0530)]
Fix output in cmdline file for specified command
So far if a command was specified in test.yaml, it showed up unusable in
cmdline file. Fix it with appropriate environment handling.
Philippe Antoine [Tue, 3 Sep 2019 14:26:26 +0000 (16:26 +0200)]
Revert "Skips not yet passing http evader cases"
This reverts commit
d6be0d9bde7ec9fd9028670966eabb46ccfd3f92 .
Shivani Bhardwaj [Thu, 11 Jul 2019 14:14:55 +0000 (19:44 +0530)]
run: Add --skip-tests option
Given the ever increasing number of tests, give the developer an option
to skip tests based on patterns. Multiple patterns can be provided
separated by commas.
Usage
=====
```
$ python ../suricata-verify/run.py --skip-tests evad,draft
```
As a result, all the tests containing "evad" or "draft" in their names.
Shivani Bhardwaj [Thu, 11 Jul 2019 12:41:54 +0000 (18:11 +0530)]
Move http-evader-* tests to http-evader folder
Shivani Bhardwaj [Thu, 11 Jul 2019 12:32:32 +0000 (18:02 +0530)]
run: Allow tests in subdirectories
With this patch it is now possible to have subdirectories with tests
under the main test directory. This shall help tests become more
organized.
Jeff Lucovsky [Tue, 2 Jul 2019 19:16:31 +0000 (21:16 +0200)]
tests: add tcp fastopen test
Philippe Antoine [Tue, 7 May 2019 14:22:42 +0000 (16:22 +0200)]
Adds test case for http_header while closing
Victor Julien [Tue, 23 Jul 2019 08:41:53 +0000 (10:41 +0200)]
tests: pcap-ng -> pcap
Victor Julien [Tue, 23 Jul 2019 08:57:59 +0000 (10:57 +0200)]
travis: add check for pcap-ng files
Jeff Lucovsky [Sun, 21 Jul 2019 16:33:32 +0000 (12:33 -0400)]
tests: add test cases for FTP logging
Jeff Lucovsky [Sat, 13 Jul 2019 15:58:36 +0000 (11:58 -0400)]
tests: update for anomaly filters
Shivani Bhardwaj [Fri, 5 Jul 2019 12:08:20 +0000 (17:38 +0530)]
Modify test.yaml to support tests for 4.1.x
Shivani Bhardwaj [Wed, 3 Jul 2019 07:42:18 +0000 (13:12 +0530)]
Remove min-version requirement
Shivani Bhardwaj [Tue, 18 Jun 2019 16:22:49 +0000 (21:52 +0530)]
Add tests for TFTP read and write requests
Closes redmine ticket #3043.
Philippe Antoine [Wed, 3 Jul 2019 20:02:38 +0000 (22:02 +0200)]
Moving pcapng files to pcap format
Philippe Antoine [Thu, 20 Jun 2019 08:10:55 +0000 (10:10 +0200)]
Skips not yet passing http evader cases
Philippe Antoine [Fri, 8 Mar 2019 09:35:42 +0000 (10:35 +0100)]
Adds all http evader cases
Victor Julien [Mon, 1 Jul 2019 12:47:00 +0000 (14:47 +0200)]
tests: add ipv4.hdr and ipv6.hdr tests
Victor Julien [Fri, 28 Jun 2019 15:03:34 +0000 (17:03 +0200)]
tests: fix vxlan test
Victor Julien [Fri, 28 Jun 2019 08:52:08 +0000 (10:52 +0200)]
tests: add vxlan with ssh test
Victor Julien [Thu, 27 Jun 2019 13:14:26 +0000 (15:14 +0200)]
tests: icmp over vxlan test
Victor Julien [Thu, 27 Jun 2019 07:10:49 +0000 (09:10 +0200)]
tests: add basic vxlan test
Victor Julien [Fri, 21 Jun 2019 12:39:25 +0000 (14:39 +0200)]
tests: add tests for udp.hdr and tcp.hdr
Victor Julien [Tue, 18 Jun 2019 13:51:28 +0000 (15:51 +0200)]
tests: add test for tcp.mss keyword
Victor Julien [Thu, 6 Jun 2019 11:51:58 +0000 (13:51 +0200)]
snmp: convert pcap-ng file to pcap
Pierre Chifflier [Tue, 21 May 2019 18:51:23 +0000 (20:51 +0200)]
tests: add testcases for SNMP
SNMP v2c, v3 (unauth and encrypted)
jason taylor [Thu, 23 May 2019 00:04:55 +0000 (20:04 -0400)]
tests: add invalid byte extract depth usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Tue, 21 May 2019 01:35:22 +0000 (21:35 -0400)]
tests: add invalid relative fast_pattern usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Tue, 21 May 2019 01:32:55 +0000 (21:32 -0400)]
tests: add invalid relative negate fast_pattern
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Sun, 19 May 2019 01:15:56 +0000 (21:15 -0400)]
tests: add invalid hex usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Sun, 19 May 2019 01:14:35 +0000 (21:14 -0400)]
tests: add invalid content quotes usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Sat, 18 May 2019 23:55:53 +0000 (19:55 -0400)]
tests: update checks for suricata PR #3865
Signed-off-by: jason taylor <jtfas90@gmail.com>
Philippe Antoine [Fri, 17 May 2019 11:56:06 +0000 (13:56 +0200)]
Adds test case four uri double encoding
Jeff Lucovsky [Sat, 30 Mar 2019 15:07:37 +0000 (08:07 -0700)]
FTP active/passive mode file extraction tests
This changeset adds test cases for FTP active and passive mode using
the pcaps from issue 2527.
Shivani Bhardwaj [Sat, 18 May 2019 14:35:07 +0000 (20:05 +0530)]
Add tests for bug 28
This patch adds tests for the long closed redmine ticket #28.
Mats Klepsland [Thu, 16 May 2019 09:44:31 +0000 (11:44 +0200)]
tests/tls: add testcases for JA3S
jason taylor [Fri, 17 May 2019 15:18:54 +0000 (11:18 -0400)]
tests: update minimum version to 5.0.0
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 16:11:27 +0000 (12:11 -0400)]
tests: add invalid semicolon usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 16:11:10 +0000 (12:11 -0400)]
tests: add invalid semicolon usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 16:10:47 +0000 (12:10 -0400)]
tests: add invalid quotation mark usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 16:10:17 +0000 (12:10 -0400)]
tests: add invalid dsize range usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 16:09:38 +0000 (12:09 -0400)]
tests: add invalid dsize range and offset usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 16:08:52 +0000 (12:08 -0400)]
tests: add invalid dsize and offset usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 16:07:54 +0000 (12:07 -0400)]
tests: add invalid content and dsize usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 15:23:36 +0000 (11:23 -0400)]
tests: add invalid within and within usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 15:23:14 +0000 (11:23 -0400)]
tests: add invalid offset and offset usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 15:22:47 +0000 (11:22 -0400)]
tests: add invalid offset and distance usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 15:22:23 +0000 (11:22 -0400)]
tests: add invalid depth within usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 15:21:53 +0000 (11:21 -0400)]
tests: add invalid depth within usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 15:21:21 +0000 (11:21 -0400)]
tests: add invalid depth usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 15:19:48 +0000 (11:19 -0400)]
tests: add invalid depth and depth usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 01:04:14 +0000 (21:04 -0400)]
tests: add more invalid depth and distance usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 00:59:03 +0000 (20:59 -0400)]
tests: add invalid offset and within usage
Signed-off-by: jason taylor <jtfas90@gmail.com>
jason taylor [Wed, 15 May 2019 00:45:13 +0000 (20:45 -0400)]
tests: add invalid depth and distance usage
Signed-off-by: jason taylor <jtfas90@gmail.com>