Actions
Feature #4703
opensuricata-verify: native support for engine-analysis
Status:
New
Priority:
Normal
Assignee:
-
Target version:
-
Effort:
Difficulty:
Label:
Description
Engine-analysis can output various json files about rules and other things. Would be cool if we could match on those similar to how we can match on eve.json in our test.yaml.
Updated by Jason Ish over 2 years ago
You can set a filename in a match filter, for example: https://github.com/OISF/suricata-verify/blob/master/tests/dns-eve-type-filtering/test.yaml#L13
Actions