提交安全策略用例优化

This commit is contained in:
lyf
2021-03-22 18:24:26 +08:00
parent 0bbcdae766
commit bb4717b09f
15 changed files with 625 additions and 623 deletions

View File

@@ -14,24 +14,24 @@ SecurityMonitorSSL001
[Tags] Monitor SSL SNI
#新建对象fqdn
Comment 新建对象fqdn
CreatePage FQDN single ${TEST NAME}_FQDN1 keywordtext=$www.facebook.com
CreatePage FQDN single ${TEST NAME}${tag}_FQDN1 keywordtext=$www.facebook.com
Comment 新建对象fqdn
CreatePage FQDN single ${TEST NAME}_FQDN2 keywordtext=*youtube.com
CreatePage FQDN single ${TEST NAME}${tag}_FQDN2 keywordtext=*youtube.com
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}${tag}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sourceAddIpList} Create List ${sip1}
${sourceInfo} Create Dictionary sourceAddIpList=${sourceAddIpList}
${sniname} create list ${TEST NAME}_FQDN ${TEST NAME}_FQDN2
${sniname} create list ${TEST NAME}${tag}_FQDN ${TEST NAME}${tag}_FQDN2
${filter} create list SNI
${filterInfo} Create Dictionary Filter=${filter} SSLSNIname=${sniname}
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME}${tag} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
UIPolicies ${policyInfo} SourceInfo=${sourceInfo} FilterInfo=${filterInfo}
@@ -40,7 +40,7 @@ SecurityMonitorSSL001
SecurityMonitorSSL002
[Tags] Monitor SSL SNI
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}${tag}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sourceAddIpList} Create List ${sip1}
@@ -52,7 +52,7 @@ SecurityMonitorSSL002
${filterInfo} Create Dictionary Filter=${filter} SSLSNIname=${sniname} Hosttype=Category
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME}${tag} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
UIPolicies ${policyInfo} SourceInfo=${sourceInfo} FilterInfo=${filterInfo}
@@ -62,25 +62,25 @@ SecurityMonitorSSL003
[Tags] Monitor SSL SNI
#新建对象fqdn
Comment 新建对象fqdn
CreatePage FQDN single ${TEST NAME}_FQDN1 keywordtext=$twitter.com
CreatePage FQDN single ${TEST NAME}${tag}_FQDN1 keywordtext=$twitter.com
#新建对象fqdn
Comment 新建对象fqdn
CreatePage FQDN single ${TEST NAME}_FQDN2 keywordtext=*.com
CreatePage FQDN single ${TEST NAME}${tag}_FQDN2 keywordtext=*.com
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}${tag}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sourceAddIpList} Create List ${sip1}
${sourceInfo} Create Dictionary sourceAddIpList=${sourceAddIpList}
${cnname} create list ${TEST NAME}_FQDN1 ${TEST NAME}_FQDN2
${cnname} create list ${TEST NAME}${tag}_FQDN1 ${TEST NAME}${tag}_FQDN2
${filter} create list CN
${filterInfo} Create Dictionary Filter=${filter} CNIname=${cnname}
${filterInfo} Create Dictionary Filter=${filter} CNname=${cnname}
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME}${tag} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
UIPolicies ${policyInfo} SourceInfo=${sourceInfo} FilterInfo=${filterInfo}
@@ -91,7 +91,7 @@ SecurityMonitorSSL003
SecurityMonitorSSL004
[Tags] Monitor SSL Category
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}${tag}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sourceAddIpList} Create List ${sip1}
@@ -101,9 +101,9 @@ SecurityMonitorSSL004
${filter} create list CN
${filterInfo} Create Dictionary Filter=${filter} CNIname=${cnname} Hosttype=Category
${filterInfo} Create Dictionary Filter=${filter} CNname=${cnname} Hosttype=Category
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME}${tag} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
UIPolicies ${policyInfo} SourceInfo=${sourceInfo} FilterInfo=${filterInfo}
@@ -112,15 +112,15 @@ SecurityMonitorSSL006
[Tags] Monitor SSL SAN
#新建对象fqdn
Comment 新建对象fqdn
CreatePage FQDN single ${TEST NAME}_FQDN keywordtext=$mail.ru
CreatePage FQDN single ${TEST NAME}${tag}_FQDN keywordtext=$mail.ru
${sanname} create list ${TEST NAME}_FQDN
${sanname} create list ${TEST NAME}${tag}_FQDN
${filter} create list SAN
${filterInfo} Create Dictionary Filter=${filter} SANIname=${sanname}
${filterInfo} Create Dictionary Filter=${filter} SANname=${sanname}
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME}${tag} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
UIPolicies ${policyInfo} FilterInfo=${filterInfo}
@@ -130,22 +130,22 @@ SecurityMonitorSSL007
[Tags] Monitor SSL SNI+CN+SAN
#新建对象fqdn
Comment 新建对象fqdn
CreatePage FQDN single ${TEST NAME}_FQDN1 keywordtext=*twitter.com
CreatePage FQDN single ${TEST NAME}${tag}_FQDN1 keywordtext=*twitter.com
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sip1} Create Dictionary Sordtype=Source Type1=Ip CreateOrSearch=Create Add=Address Name=${TEST NAME}${tag}_IP1 Ipclienttext1=192.168.50.17 Port=1-65535
${sourceAddIpList} Create List ${sip1}
${sourceInfo} Create Dictionary sourceAddIpList=${sourceAddIpList}
${cnname} create list ${TEST NAME}_FQDN1
${cnname} create list ${TEST NAME}${tag}_FQDN1
${filter} create list SNI CN SAN
${filterInfo} Create Dictionary Filter=${filter} SSLSNIname=${cnname} CNIname=${cnname} SANIname=${cnname}
${filterInfo} Create Dictionary Filter=${filter} SSLSNIname=${cnname} CNname=${cnname} SANname=${cnname}
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
${policyInfo} Create Dictionary PolicyType=Security Policy CreateorEdit=Create PolicyName=${TEST NAME}${tag} PolicyAction=Monitor ApplicationSearch=SSL PolicyLogSession=1 PolicyEnabled=1
UIPolicies ${policyInfo} SourceInfo=${sourceInfo} FilterInfo=${filterInfo}