zeek/testing/btest/scripts/base/protocols
Jon Siwek 10b1857a9c Update &check'd fields in various protocol parsers
* The altered Modbus checks seemed overly strict -- the pcap used
  for the unit test at least had quantities/byte_count fields of
  zero, to which the server responds with an error (expected).

* Most of the altered DNP3 checks seemed overly strict and caused
  the unit tests to fail.  The one that was just wrong was the
  'start' field in header blocks.

* Removed the "start" parameter of the dnp3_header_block event
  since it's always the same value.

* The SMB check failed to compile and I don't know what it intended
  to do, so removed.
2018-04-18 18:16:34 -05:00
..
arp ARP: remove unnecessary variables and add testcase 2016-04-27 06:51:04 -07:00
conn Fix duplication of new_connection_contents event 2016-05-17 10:32:13 -07:00
dce-rpc Add a DCE-RPC test. 2016-07-07 14:17:25 -04:00
dhcp DHCP: Adding unit tests. 2013-07-31 17:30:56 -04:00
dnp3 Update &check'd fields in various protocol parsers 2018-04-18 18:16:34 -05:00
dns Add DNS tests for huge TLL and CAA 2016-04-25 15:43:20 -07:00
ftp Fixing FTP cwd getting overlue long. 2016-05-29 08:52:47 -07:00
http HTTP: Recognize and skip upgrade/websocket connections. 2017-08-04 07:04:28 -07:00
imap also generate an event when starttls is encounterd for imap. 2015-07-23 12:37:40 -07:00
irc add a max_line_length flag to ContentLine_Analyzer 2017-11-03 16:25:26 -04:00
krb Added and verified correct test results 2017-09-17 21:25:59 +00:00
modbus Call ProtocolConfirmed on modbus 2015-06-19 07:00:38 -04:00
mount Add unit tests for new MOUNT events -- mount_proc_mnt, mount_proc_umnt, 2018-01-11 17:00:15 -05:00
mysql Add a btest for the Wireshark sample MySQL PCAP 2014-08-08 15:02:18 -05:00
nfs Format print nfs units tests to improve output readability. Add unit 2018-01-11 17:02:47 -05:00
pop3 Slightly earlier protocol confirmation for pop3. 2015-07-23 16:55:02 -07:00
radius Rework the RADIUS base script. 2017-02-20 00:07:14 -05:00
rdp Huge updates to the RDP analyzer from Josh Liburdi. 2015-03-04 13:12:03 -05:00
rfb Analyzer and bro script for RFB protocol (VNC) 2016-04-11 10:35:00 +02:00
sip Add SIP btests. 2015-04-19 22:25:37 -04:00
smb Improving the new SMB2 create command test. 2018-04-02 22:25:51 -04:00
smtp BIT-1410: Add btest 2015-06-01 20:49:04 -05:00
snmp Correct endianness of IP addresses in SNMP. 2016-07-26 15:02:11 -07:00
socks Do not log SOCKS passwords by default. 2017-12-01 14:36:57 -08:00
ssh Add btest for new SSH curve25519 KEX 2017-10-05 14:36:13 -05:00
ssl Recognize TLS 1.3 negotiation correctly. 2018-03-27 14:58:06 -07:00
syslog Porting syslog analyzer as another example. 2013-04-05 13:13:30 -07:00
tcp Fix behavior of connection_pending event 2016-07-26 15:49:51 -07:00
xmpp Add xmpp dpd sig and fix a few parsing problems for connections that do 2015-07-21 13:20:35 -07:00