mirror of
https://github.com/falcosecurity/falco.git
synced 2025-08-12 03:22:41 +00:00
update(test): strict output tests
Signed-off-by: Leonardo Grasso <me@leonardograsso.com>
This commit is contained in:
parent
6e8352e847
commit
682e53f5b5
@ -41,4 +41,4 @@ stdout_output:
|
|||||||
|
|
||||||
program_output:
|
program_output:
|
||||||
enabled: true
|
enabled: true
|
||||||
program: cat > /tmp/falco_outputs/program_output.txt
|
program: cat >> /tmp/falco_outputs/program_output.txt
|
||||||
|
@ -652,25 +652,35 @@ trace_files: !mux
|
|||||||
trace_file: trace_files/cat_write.scap
|
trace_file: trace_files/cat_write.scap
|
||||||
stdout_contains: "Warning An open was seen .cport=<NA> command=cat /dev/null."
|
stdout_contains: "Warning An open was seen .cport=<NA> command=cat /dev/null."
|
||||||
|
|
||||||
file_output:
|
stdout_output_strict:
|
||||||
|
detect: True
|
||||||
|
detect_level: WARNING
|
||||||
|
rules_file:
|
||||||
|
- rules/single_rule.yaml
|
||||||
|
conf_file: confs/file_stdout.yaml
|
||||||
|
trace_file: trace_files/cat_write.scap
|
||||||
|
output_strictly_contains:
|
||||||
|
- stdout: output_files/single_rule_with_cat_write.txt
|
||||||
|
|
||||||
|
file_output_strict:
|
||||||
detect: True
|
detect: True
|
||||||
detect_level: WARNING
|
detect_level: WARNING
|
||||||
rules_file:
|
rules_file:
|
||||||
- rules/single_rule.yaml
|
- rules/single_rule.yaml
|
||||||
conf_file: confs/file_output.yaml
|
conf_file: confs/file_output.yaml
|
||||||
trace_file: trace_files/cat_write.scap
|
trace_file: trace_files/cat_write.scap
|
||||||
outputs:
|
output_strictly_contains:
|
||||||
- /tmp/falco_outputs/file_output.txt: Warning An open was seen
|
- /tmp/falco_outputs/file_output.txt: output_files/single_rule_with_cat_write.txt
|
||||||
|
|
||||||
program_output:
|
program_output_strict:
|
||||||
detect: True
|
detect: True
|
||||||
detect_level: WARNING
|
detect_level: WARNING
|
||||||
rules_file:
|
rules_file:
|
||||||
- rules/single_rule.yaml
|
- rules/single_rule.yaml
|
||||||
conf_file: confs/program_output.yaml
|
conf_file: confs/program_output.yaml
|
||||||
trace_file: trace_files/cat_write.scap
|
trace_file: trace_files/cat_write.scap
|
||||||
outputs:
|
output_strictly_contains:
|
||||||
- /tmp/falco_outputs/program_output.txt: Warning An open was seen
|
- /tmp/falco_outputs/program_output.txt: output_files/single_rule_with_cat_write.txt
|
||||||
|
|
||||||
grpc_unix_socket_outputs:
|
grpc_unix_socket_outputs:
|
||||||
detect: True
|
detect: True
|
||||||
@ -688,16 +698,6 @@ trace_files: !mux
|
|||||||
results:
|
results:
|
||||||
- "Warning An open was seen"
|
- "Warning An open was seen"
|
||||||
|
|
||||||
stdout_output_strict:
|
|
||||||
detect: True
|
|
||||||
detect_level: WARNING
|
|
||||||
rules_file:
|
|
||||||
- rules/single_rule.yaml
|
|
||||||
conf_file: confs/file_stdout.yaml
|
|
||||||
trace_file: trace_files/cat_write.scap
|
|
||||||
output_strictly_contains:
|
|
||||||
- stdout: output_files/single_rule_with_cat_write.txt
|
|
||||||
|
|
||||||
detect_counts:
|
detect_counts:
|
||||||
detect: True
|
detect: True
|
||||||
detect_level: WARNING
|
detect_level: WARNING
|
||||||
|
Loading…
Reference in New Issue
Block a user