MozDef/tests/alerts
Jonathan Claudius 5c3fd45680
Make events work for single or multiple events, this alert will work for both
2018-10-11 15:40:56 -04:00
..
plugins Modify unknown isp in geomodel plugin 2018-08-17 15:12:21 -05:00
alert_test_case.py Add travisci to project and stabalize tests 2017-07-05 16:37:41 -05:00
alert_test_suite.py Update alert test suite to use tests config file 2018-09-07 14:42:52 -05:00
conftest.py Create alert plugin set and new sso dashboard plugin 2017-09-26 18:11:31 -05:00
negative_alert_test_case.py Finish updating alert unit tests to new format 2017-06-15 15:02:11 -05:00
positive_alert_test_case.py Finish updating alert unit tests to new format 2017-06-15 15:02:11 -05:00
test_auditd_commands.py Add alert for generic auditd command 2018-05-24 15:52:11 -05:00
test_bruteforce_ssh.py Adjusting hostname position in alert. 2018-09-18 17:23:34 -05:00
test_cloudtrail_deadman.py forgot to set the expected_alert 2018-03-02 16:52:09 -06:00
test_cloudtrail_logging_disabled.py Removing _type from alerts and testing. Phase I. Can't fully remove _type until we move to new mapping. 2018-03-02 15:29:30 -06:00
test_deadman.py Fixup deadman alert to use hostname field 2018-08-20 16:20:02 -05:00
test_duo_authfail.py Removing _type from alerts and testing. Phase I. Can't fully remove _type until we move to new mapping. 2018-03-02 15:29:30 -06:00
test_duo_fail_open.py Modify tests to support receivedtimestamp 2017-08-23 16:31:19 -04:00
test_feedback_events.py Add unicode support to feedback alert 2018-05-21 20:06:31 -05:00
test_geomodel.py Add tests for unicode details in geomodel alert 2018-05-21 15:42:28 -05:00
test_honeycomb_case.py Remove check for _type in alert 2018-09-20 16:53:58 -05:00
test_old_events.py correcting unit test typo for alert. 2018-05-01 13:13:15 -05:00
test_open_port_violation.py Removing _type from alerts and testing. Phase I. Can't fully remove _type until we move to new mapping. 2018-03-02 15:29:30 -06:00
test_promisc_audit.py Removing _type from alerts and testing. Phase I. Can't fully remove _type until we move to new mapping. 2018-03-02 15:29:30 -06:00
test_promisc_kernel.py Removing test case I added, seems the alert doesn't trigger on program. 2018-09-18 17:49:45 -05:00
test_proxy_drop_executable.py Make events work for single or multiple events, this alert will work for both 2018-10-11 15:40:56 -04:00
test_proxy_drop_non_standard_port.py Make events work for single or multiple events, this alert will work for both 2018-10-11 15:40:56 -04:00
test_session_opened_sensitive_user.py Adding modified unit test 2018-09-18 17:16:26 -05:00
test_sqs_queues_deadman.py Remove extra line after copywrite date 2018-01-04 17:15:35 -06:00
test_ssh_access_signreleng.py Adjusting unit test for hostname change. 2018-09-18 17:36:06 -05:00
test_ssh_key.py Fixup blank line at end of file 2018-10-05 17:52:13 -04:00
test_ssh_password_auth_violation.py Removing _type from alerts and testing. Phase I. Can't fully remove _type until we move to new mapping. 2018-03-02 15:29:30 -06:00
test_trace_audit.py Remove whitespace after parenthesis 2018-10-05 17:34:36 -04:00
test_write_audit.py Remove whitespace after parenthesis 2018-10-05 17:34:36 -04:00