mirror of
https://github.com/zeek/zeek.git
synced 2025-10-03 07:08:19 +00:00

This also installs symlinks from "zeek" and "bro-config" to a wrapper script that prints a deprecation warning. The btests pass, but this is still WIP. broctl renaming is still missing. #239
12 lines
434 B
Text
12 lines
434 B
Text
# @TEST-EXEC: zeek -C -r $TRACES/smb/dssetup_DsRoleGetPrimaryDomainInformation_standalone_workstation.cap %INPUT
|
|
# @TEST-EXEC: [ ! -f dce_rpc.log ]
|
|
|
|
@load base/protocols/smb
|
|
|
|
# The DCE_RPC analyzer is a little weird since it's instantiated
|
|
# by the SMB analyzer directly in some cases. Care needs to be
|
|
# taken to handle a disabled analyzer correctly.
|
|
event zeek_init()
|
|
{
|
|
Analyzer::disable_analyzer(Analyzer::ANALYZER_DCE_RPC);
|
|
}
|