mirror of
https://github.com/zeek/zeek.git
synced 2025-10-02 14:48:21 +00:00

In GH-4422 it was pointed out that the protocols/conn/failed-service-logging.zeek policy script only works when `DPD::track_removed_services_in_connection=T` is set. This was caused by a logic error in the script. This commit fixes this logic error and introduces an additional test that checks that failed-service-logging works even when the option is not set to true.
11 lines
335 B
Text
11 lines
335 B
Text
# @TEST-DOC: Check if DPD options on violations work.
|
|
# @TEST-EXEC: zeek -r $TRACES/ftp/ftp-invalid-reply-code.pcap %INPUT
|
|
# @TEST-EXEC: btest-diff conn.log
|
|
|
|
@load policy/protocols/conn/failed-service-logging
|
|
|
|
redef DPD::track_removed_services_in_connection = T;
|
|
|
|
# @TEST-START-NEXT
|
|
|
|
@load policy/protocols/conn/failed-service-logging
|