zeek/testing/btest/scripts/base/frameworks/intel
Jan Grashoefer cafae5351b Added support for subnets to intel-framework.
The intel-framework now supports the new indicator type Intel::SUBNET.
As subnets are matched against seen addresses, the field matched was
introduced to indicate which indicator types caused the hit. A testcase
for subents was added and the old ones have been updated accordingly.
2016-03-22 19:16:51 +01:00
..
cluster-transparency.bro Canonfying an intel test to not depend on output order. 2013-11-01 05:03:54 -07:00
input-and-match.bro Updates for the Intel Framework. 2013-07-19 13:16:12 -04:00
match-subnet.bro Added support for subnets to intel-framework. 2016-03-22 19:16:51 +01:00
read-file-dist-cluster.bro Updates for the Intel Framework. 2013-07-19 13:16:12 -04:00
updated-match.bro Added testcase for intel updates. 2016-03-19 17:02:52 +01:00