Closed jmv74211 closed 2 years ago
test_archlinux_inventory_archlinux_feed.py
Check that the Vulnerability Detector module generates an alert when a vulnerability is detected and inserted.
sys_programs
, vuln_cves
, cve.db
tables must be empty.ossec.log
, alerts.json
and alerts.log
filesvuln_cves
table.Test cases
ossec.conf
configuration.wazuh-modulesd
daemon.ossec.log
and wait for the package vulnerabilities logs.alerts.json
file and wait for the vulnerability affecting entry.vuln_cve
table.cve.db
tables must be empty.000.db
tables must be empty.ossec.conf
file must be restored.ossec.log
file.alerts.json
file.The new test replaces the current inventory feed tests. Now each provider is a Tcase.
These are the providers that will have a new custom feed and will be tested:
It is asked to refactor the test module named
test_archlinux_inventory_archlinux_feed.py
.It is disabled for now, as it was failing or unstable, causing false positives.
Tasks
Checks
qa-docs
tool without errors.Additional tasks