zeek/testing/btest/Traces/dhcp
Peter Cullen fb4858d42b Prevent large dhcp log entries
A flood of DHCP traffic can result if very large log entries consisting
of many uids and/or msg_types. Such large log entries can disrupt a SIEM
ingestion pipeline. This change forcing a log entry to be written when
the number of uids or the number of msg_Types exceed a certain value.
The values are treated as options for easy configuration.
2022-07-28 11:34:18 -07:00
..
dhcp.trace DHCP: Adding unit tests. 2013-07-31 17:30:56 -04:00
dhcp_ack_subscriber_id_and_agent_remote_id.trace Add .btest scripts for dhck_ack and dhcp_discover messages verifying that new 2018-01-08 21:55:24 +01:00
dhcp_discover_param_req_and_client_id.trace Add .btest scripts for dhck_ack and dhcp_discover messages verifying that new 2018-01-08 21:55:24 +01:00
dhcp_flood.pcap Prevent large dhcp log entries 2022-07-28 11:34:18 -07:00
dhcp_inform.trace DHCP: Adding unit tests. 2013-07-31 17:30:56 -04:00
dhcp_time_and_nameserver.trace add some dhcp options 2019-05-24 16:52:12 -04:00
hw-type0.pcap GH-999: Stop formatting DHCP Client ID Hardware Type 0 as MAC 2020-06-08 11:43:07 -07:00