mirror of
https://github.com/zeek/zeek.git
synced 2025-10-02 06:38:20 +00:00

ssl connections with old versions as well as unsafe cipher suites. Also make the notice suppression handling of other ssl policy files a tad more robust.
12 lines
450 B
Text
12 lines
450 B
Text
# @TEST-EXEC: bro -r $TRACES/tls/dhe.pcap %INPUT
|
|
# @TEST-EXEC: cp notice.log notice-out.log
|
|
# @TEST-EXEC: bro -r $TRACES/tls/ssl-v2.trace %INPUT
|
|
# @TEST-EXEC: cat notice.log >> notice-out.log
|
|
# @TEST-EXEC: bro -r $TRACES/tls/ssl.v3.trace %INPUT
|
|
# @TEST-EXEC: cat notice.log >> notice-out.log
|
|
# @TEST-EXEC: btest-diff notice-out.log
|
|
|
|
@load protocols/ssl/weak-keys
|
|
|
|
redef SSL::notify_weak_keys = ALL_HOSTS;
|
|
redef SSL::notify_minimal_key_length = 4096;
|