Skip to content

detect-engine-analyzer: test engine-analysis with engine-analysis tur…#3058

Open
spinaev wants to merge 2 commits intoOISF:masterfrom
spinaev:test-8505
Open

detect-engine-analyzer: test engine-analysis with engine-analysis tur…#3058
spinaev wants to merge 2 commits intoOISF:masterfrom
spinaev:test-8505

Conversation

@spinaev
Copy link
Copy Markdown

@spinaev spinaev commented Apr 29, 2026

test engine-analysis with engine-analysis turned off

Ticket

Redmine ticket: https://redmine.openinfosecfoundation.org/issues/8505

@spinaev
Copy link
Copy Markdown
Author

spinaev commented Apr 29, 2026

@catenacyber there also should be min-version: 9?

@catenacyber
Copy link
Copy Markdown
Collaborator

there also should be min-version: 9?

Yes there should be

Comment thread tests/bug-8505/test.rules
@@ -0,0 +1 @@
alert tcp any any -> any any (msg:"SURICATA STREAM Packet with invalid timestamp"; stream-event:pkt_invalid_timestamp; classtype:protocol-command-decode; sid:2210044; rev:2;)
Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This could be any rule, right ?

Copy link
Copy Markdown
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yes, just copypasted it from some other test

Copy link
Copy Markdown
Collaborator

@catenacyber catenacyber left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Test looks good to me

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

requires suricata pr Depends on a PR in Suricata

Development

Successfully merging this pull request may close these issues.

2 participants