Update docs and tests for bro_(init|done) -> zeek_(init|done)

This commit is contained in:
Seth Hall 2019-04-14 08:19:08 -04:00
parent 8cefb9be42
commit 5db766bd88
508 changed files with 532 additions and 2016 deletions

View file

@ -17,7 +17,7 @@ www.dresdner-privat.de Intel::DOMAIN source1 test entry http://some-data-distrib
redef Intel::read_files += { "intel.dat" };
event bro_init()
event zeek_init()
{
suspend_processing();
}

View file

@ -16,7 +16,7 @@ name-addr@example.com Intel::EMAIL source1 test entry http://some-data-distribut
redef Intel::read_files += { "intel.dat" };
event bro_init()
event zeek_init()
{
suspend_processing();
}

View file

@ -23,7 +23,7 @@ redef Intel::read_files += {
global total_files_read = 0;
event bro_init()
event zeek_init()
{
suspend_processing();
}

View file

@ -34,7 +34,7 @@ event new_software()
event new_software();
}
event bro_init()
event zeek_init()
{
event new_software();
}

View file

@ -11,7 +11,7 @@ redef Software::vulnerable_versions += {
["Java"] = set(java_1_6_vuln, java_1_7_vuln)
};
event bro_init()
event zeek_init()
{
Software::found([$orig_h=1.2.3.4, $orig_p=1234/tcp, $resp_h=4.3.2.1, $resp_p=80/tcp],
[$name="Java", $host=1.2.3.4, $version=[$major=1, $minor=7, $minor2=0, $minor3=15]]);