]> git.ipfire.org Git - people/stevee/suricata-verify.git/commitdiff
dns-tcp-multirequest-buffer: versions for v1 and v2 DNS logging
authorJason Ish <jason.ish@oisf.net>
Fri, 12 Mar 2021 23:27:01 +0000 (17:27 -0600)
committerJason Ish <jason.ish@oisf.net>
Mon, 15 Mar 2021 22:10:26 +0000 (16:10 -0600)
tests/dns-tcp-multirequest-buffer-v1/README [moved from tests/dns-tcp-multirequest-buffer-1/README with 100% similarity]
tests/dns-tcp-multirequest-buffer-v1/check.sh [moved from tests/dns-tcp-multirequest-buffer-1/check.sh with 100% similarity]
tests/dns-tcp-multirequest-buffer-v1/dns-tcp-multirequest-buffer.pcap [moved from tests/dns-tcp-multirequest-buffer-1/dns-tcp-multirequest-buffer.pcap with 100% similarity]
tests/dns-tcp-multirequest-buffer-v1/suricata.yaml [moved from tests/dns-tcp-multirequest-buffer-1/suricata.yaml with 100% similarity]
tests/dns-tcp-multirequest-buffer-v1/test.yaml [moved from tests/dns-tcp-multirequest-buffer-1/test.yaml with 68% similarity]
tests/dns-tcp-multirequest-buffer/README [new file with mode: 0644]
tests/dns-tcp-multirequest-buffer/dns-tcp-multirequest-buffer.pcap [new file with mode: 0644]
tests/dns-tcp-multirequest-buffer/suricata.yaml [new file with mode: 0644]
tests/dns-tcp-multirequest-buffer/test.yaml [new file with mode: 0644]

similarity index 68%
rename from tests/dns-tcp-multirequest-buffer-1/test.yaml
rename to tests/dns-tcp-multirequest-buffer-v1/test.yaml
index 695f2f882f4ca65660e79aff15f931fe504120c4..8dafa433a18b29692205f76ee1c723bec685b12b 100644 (file)
@@ -1,4 +1,4 @@
 requires:
   features:
     - HAVE_LIBJANSSON
-    
+  lt-version: 7    
diff --git a/tests/dns-tcp-multirequest-buffer/README b/tests/dns-tcp-multirequest-buffer/README
new file mode 100644 (file)
index 0000000..6ce66e4
--- /dev/null
@@ -0,0 +1,5 @@
+Test a TCP DNS request that contains multiple DNS requests in a single
+buffer.
+
+This test includes its own verification script instead of using the
+default file compare.
diff --git a/tests/dns-tcp-multirequest-buffer/dns-tcp-multirequest-buffer.pcap b/tests/dns-tcp-multirequest-buffer/dns-tcp-multirequest-buffer.pcap
new file mode 100644 (file)
index 0000000..f46aefb
Binary files /dev/null and b/tests/dns-tcp-multirequest-buffer/dns-tcp-multirequest-buffer.pcap differ
diff --git a/tests/dns-tcp-multirequest-buffer/suricata.yaml b/tests/dns-tcp-multirequest-buffer/suricata.yaml
new file mode 100644 (file)
index 0000000..81343fa
--- /dev/null
@@ -0,0 +1,8 @@
+%YAML 1.1
+---
+
+outputs:
+  - eve-log:
+      enabled: yes
+      types:
+        - dns:
diff --git a/tests/dns-tcp-multirequest-buffer/test.yaml b/tests/dns-tcp-multirequest-buffer/test.yaml
new file mode 100644 (file)
index 0000000..9bdb3c8
--- /dev/null
@@ -0,0 +1,13 @@
+requires:
+  features:
+    - HAVE_LIBJANSSON
+    
+checks:
+  - filter:
+      count: 20
+      match:
+        dns.type: query
+  - filter:
+      count: 20
+      match:
+        dns.type: answer