diff --git a/tests/truncate-applayer-test-02/test.yaml b/tests/truncate-applayer-test-02/test.yaml index bec464e5d..864382a8a 100644 --- a/tests/truncate-applayer-test-02/test.yaml +++ b/tests/truncate-applayer-test-02/test.yaml @@ -5,11 +5,31 @@ args: checks: - filter: + min-version: 9 + count: 2 + match: + event_type: alert + alert.signature_id: 1 +- filter: + min-version: 9 + count: 2 + match: + event_type: alert + alert.signature_id: 2 +- filter: + min-version: 9 + count: 0 + match: + event_type: flow + flow.exception_policy[0].target: app_layer_error +- filter: + lt-version: 9 count: 1 match: event_type: alert alert.signature_id: 1 - filter: + lt-version: 9 count: 1 match: event_type: alert