Project

General

Profile

Feature #4060

createst: Commandline param to specify minimum required version of Suricata

Added by Shivani Bhardwaj 6 months ago. Updated 6 months ago.

Status:
In Review
Priority:
Normal
Target version:
Effort:
Difficulty:
Label:
Beginner, Outreachy, Python

Description

Current createst script generates only the filter blocks as per eve.json, extend its functionality to add a global minimum required version of Suricata as mentioned on command line.

Expectation

createst.py mytest mypcap --add-min-version 5.0

The final generated test.yaml should have a min suricata version defined globally. e.g. https://github.com/OISF/suricata-verify/blob/master/tests/flowbit-oring/test.yaml

#1

Updated by Shivani Bhardwaj 6 months ago

  • Description updated (diff)
#2

Updated by Shivani Bhardwaj 6 months ago

  • Target version set to QA
#3

Updated by Anuradha jha 6 months ago

  • Assignee changed from Community Ticket to Anuradha jha
#4

Updated by Anuradha jha 6 months ago

  • Assignee changed from Anuradha jha to Community Ticket
#5

Updated by Tharushi Jayasekara 6 months ago

  • Assignee changed from Community Ticket to Tharushi Jayasekara
#6

Updated by Tharushi Jayasekara 6 months ago

Shivani Bhardwaj wrote:

Current createst script generates only the filter blocks as per eve.json, extend its functionality to add a global minimum required version of Suricata as mentioned on command line.

Expectation

[...]

The final generated test.yaml should have a min suricata version defined globally. e.g. https://github.com/OISF/suricata-verify/blob/master/tests/flowbit-oring/test.yaml

Hi Shivani,

Just a small question regarding the wording of the commandline param. Could I change it to "min-version" so that the it is consistent with the existing params, or should I use "add-min-version" as given in the text?

#7

Updated by Tharushi Jayasekara 6 months ago

  • Status changed from New to In Review

Also available in: Atom PDF