diff --git a/scripts/policy/protocols/ssl/heartbleed.bro b/scripts/policy/protocols/ssl/heartbleed.bro index dbf27ec63e..1e0fdcd98b 100644 --- a/scripts/policy/protocols/ssl/heartbleed.bro +++ b/scripts/policy/protocols/ssl/heartbleed.bro @@ -1,6 +1,9 @@ -module Heartbleed; +# Detect the TLS heartbleed attack. See http://heartbleed.com -# Detect the TLS heartbleed attack. See http://heartbleed.com/ +@load base/protocols/ssl +@load base/frameworks/notice + +module Heartbleed; # Do not disable analyzers after detection - otherwhise we will not notice encrypted attacks redef SSL::disable_analyzer_after_detection=F; diff --git a/scripts/test-all-policy.bro b/scripts/test-all-policy.bro index 895a9a8901..5c6ed286fb 100644 --- a/scripts/test-all-policy.bro +++ b/scripts/test-all-policy.bro @@ -85,6 +85,7 @@ @load protocols/ssh/software.bro @load protocols/ssl/expiring-certs.bro @load protocols/ssl/extract-certs-pem.bro +@load protocols/ssl/heartbleed.bro @load protocols/ssl/known-certs.bro @load protocols/ssl/log-hostcerts-only.bro #@load protocols/ssl/notary.bro diff --git a/testing/btest/core/leaks/http-connect.bro b/testing/btest/core/leaks/http-connect.bro index e9a47d00a2..fe42f3ec0a 100644 --- a/testing/btest/core/leaks/http-connect.bro +++ b/testing/btest/core/leaks/http-connect.bro @@ -5,7 +5,7 @@ # @TEST-REQUIRES: bro --help 2>&1 | grep -q mem-leaks # # @TEST-EXEC: HEAP_CHECK_DUMP_DIRECTORY=. HEAPCHECK=local btest-bg-run bro bro -b -m -r $TRACES/http/connect-with-smtp.trace %INPUT -# @TEST-EXEC: btest-bg-wait 15 +# @TEST-EXEC: btest-bg-wait 30 @load base/protocols/conn @load base/protocols/http diff --git a/testing/btest/core/leaks/x509_verify.bro b/testing/btest/core/leaks/x509_verify.bro index 426a95d2c2..f4a5ddc7d1 100644 --- a/testing/btest/core/leaks/x509_verify.bro +++ b/testing/btest/core/leaks/x509_verify.bro @@ -5,7 +5,7 @@ # @TEST-REQUIRES: bro --help 2>&1 | grep -q mem-leaks # # @TEST-EXEC: HEAP_CHECK_DUMP_DIRECTORY=. HEAPCHECK=local btest-bg-run bro bro -b -m -r $TRACES/tls/tls-expired-cert.trace %INPUT -# @TEST-EXEC: btest-bg-wait 15 +# @TEST-EXEC: btest-bg-wait 30 @load base/protocols/ssl