Skip to content

detect-engine-analyzer: test engine-analysis with engine-analysis tur…#3058

Closed
spinaev wants to merge 2 commits into
OISF:masterfrom
spinaev:test-8505
Closed

detect-engine-analyzer: test engine-analysis with engine-analysis tur…#3058
spinaev wants to merge 2 commits into
OISF:masterfrom
spinaev:test-8505

Conversation

@spinaev

@spinaev spinaev commented Apr 29, 2026

Copy link
Copy Markdown

test engine-analysis with engine-analysis turned off

Ticket

Redmine ticket: https://redmine.openinfosecfoundation.org/issues/8505

@spinaev

spinaev commented Apr 29, 2026

Copy link
Copy Markdown
Author

@catenacyber there also should be min-version: 9?

@catenacyber

Copy link
Copy Markdown
Collaborator

there also should be min-version: 9?

Yes there should be

Comment thread tests/bug-8505/test.rules
@@ -0,0 +1 @@
alert tcp any any -> any any (msg:"SURICATA STREAM Packet with invalid timestamp"; stream-event:pkt_invalid_timestamp; classtype:protocol-command-decode; sid:2210044; rev:2;)

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This could be any rule, right ?

Copy link
Copy Markdown
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

yes, just copypasted it from some other test

@catenacyber catenacyber left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Test looks good to me

@victorjulien

Copy link
Copy Markdown
Member

Merged in #3073, thanks!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

requires suricata pr Depends on a PR in Suricata

Development

Successfully merging this pull request may close these issues.

3 participants