Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Automated tests for Syslog #1

Closed
8 tasks
Cerv1 opened this issue Feb 15, 2019 · 0 comments
Closed
8 tasks

Automated tests for Syslog #1

Cerv1 opened this issue Feb 15, 2019 · 0 comments

Comments

@Cerv1
Copy link
Contributor

Cerv1 commented Feb 15, 2019

Syslog test

Output

  • Send alerts using ports other than 514.
  • Send alerts from the minimum level.
  • Send alerts for a specific group.
  • Send alerts for a specific rule.
  • Send alert in json format.
  • Send alert in splunk format.
  • Send alert in cef format.
  • Send alerts for a specific log location.

Side note
If two identical alerts are sent to the syslog server it won't log them in /var/log/syslog. We must change some fields values between alerts in order to get the information properly.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants