Christian Kreibich
0b674eb851
Baseline refresh to reflect btest 0.64
2020-12-06 20:19:49 -08:00
Jon Siwek
3ad306355f
Improve Intel expire-item btest to be less time-sensitive
2020-08-11 11:26:21 -07:00
Tim Wojtulewicz
78298e99b7
Extend the timeouts on a few intel tests, update baselines
2020-08-11 11:26:21 -07:00
Tim Wojtulewicz
30fa514d30
Updating test baselines for new dictionary code due to changes in ordering of fields in the dictionary
2020-08-11 11:26:21 -07:00
Tim Wojtulewicz
7496cf14c7
Extend the timeouts on a few intel tests, update baselines
2020-08-09 21:13:12 -07:00
Tim Wojtulewicz
21872aef39
Updating test baselines for new dictionary code due to changes in ordering of fields in the dictionary
2020-08-09 21:13:10 -07:00
Jon Siwek
2fa74e4bcb
Change default value of peer_description "zeek"
2019-06-06 19:49:30 -07:00
Seth Hall
c973375f1f
Add subnet intel expiration to a test.
2018-04-27 19:55:22 -04:00
Jan Grashoefer
c6b16ad2ca
Updated expiration test case to cover reinsertion.
...
Addresses BIT-1790
2017-02-09 19:40:25 +01:00
Jan Grashoefer
1412de1798
Refactored FAF integration of intel framework.
...
File Analysis Framework related code has been moved into a separate
script. Using redefinitions of the corresponding records causes the
file-related columns to appear last.
2016-06-15 21:56:53 +02:00
Jan Grashoefer
5d340e669c
Added expiration for intelligence items.
...
Expiration of intelligence items can be configured using
Intel::item_expiration. Expiration can be handled using the
Intel::item_expired hook.
2016-06-15 19:29:48 +02:00