zeek/testing/btest/scripts/base/protocols
Jon Siwek 81133f3116 Merge remote-tracking branch 'origin/topic/seth/dhcp-update'
* origin/topic/seth/dhcp-update:
  Rework to the DHCP analyzer.
  First step of DHCP analyzer rearchitecture.
  Add .btest scripts for dhck_ack and dhcp_discover messages verifying that new options are correctly reported in dhcp.log records.
  Extend DHCP protocol analyzer with new options.

BIT-1924 #merged

Additional changes:

* Removed known-hosts.bro as the only thing populating its table was
  the already-removed known-hosts-and-devices.bro.  So a
  known_devices.log will no longer be generated.

* In dhcp-options.pac, the process_relay_agent_inf_option had a memleak
  and also process_auto_proxy_config_option looked like it accessed one
  byte past the end of the available bytestring, so fixed those.
2018-05-01 18:06:41 -05:00
..
arp ARP: remove unnecessary variables and add testcase 2016-04-27 06:51:04 -07:00
conn Fix duplication of new_connection_contents event 2016-05-17 10:32:13 -07:00
dce-rpc Add a DCE-RPC test. 2016-07-07 14:17:25 -04:00
dhcp Rework to the DHCP analyzer. 2018-03-01 08:36:32 -08:00
dnp3 Update &check'd fields in various protocol parsers 2018-04-18 18:16:34 -05:00
dns Add DNS tests for huge TLL and CAA 2016-04-25 15:43:20 -07:00
ftp Fixing FTP cwd getting overlue long. 2016-05-29 08:52:47 -07:00
http HTTP: Recognize and skip upgrade/websocket connections. 2017-08-04 07:04:28 -07:00
imap also generate an event when starttls is encounterd for imap. 2015-07-23 12:37:40 -07:00
irc add a max_line_length flag to ContentLine_Analyzer 2017-11-03 16:25:26 -04:00
krb Added and verified correct test results 2017-09-17 21:25:59 +00:00
modbus Call ProtocolConfirmed on modbus 2015-06-19 07:00:38 -04:00
mount Add unit tests for new MOUNT events -- mount_proc_mnt, mount_proc_umnt, 2018-01-11 17:00:15 -05:00
mysql Add a btest for the Wireshark sample MySQL PCAP 2014-08-08 15:02:18 -05:00
nfs Format print nfs units tests to improve output readability. Add unit 2018-01-11 17:02:47 -05:00
pop3 Slightly earlier protocol confirmation for pop3. 2015-07-23 16:55:02 -07:00
radius Rework the RADIUS base script. 2017-02-20 00:07:14 -05:00
rdp Huge updates to the RDP analyzer from Josh Liburdi. 2015-03-04 13:12:03 -05:00
rfb Analyzer and bro script for RFB protocol (VNC) 2016-04-11 10:35:00 +02:00
sip Add SIP btests. 2015-04-19 22:25:37 -04:00
smb Improving the new SMB2 create command test. 2018-04-02 22:25:51 -04:00
smtp BIT-1410: Add btest 2015-06-01 20:49:04 -05:00
snmp Correct endianness of IP addresses in SNMP. 2016-07-26 15:02:11 -07:00
socks Do not log SOCKS passwords by default. 2017-12-01 14:36:57 -08:00
ssh Add btest for new SSH curve25519 KEX 2017-10-05 14:36:13 -05:00
ssl Recognize TLS 1.3 negotiation correctly. 2018-03-27 14:58:06 -07:00
syslog Porting syslog analyzer as another example. 2013-04-05 13:13:30 -07:00
tcp Fix behavior of connection_pending event 2016-07-26 15:49:51 -07:00
xmpp Add xmpp dpd sig and fix a few parsing problems for connections that do 2015-07-21 13:20:35 -07:00