Adding support for command enum through `EHLO`

patch-13
AV-IO 2024-11-02 20:42:52 -07:00
parent e9e7ff62c7
commit 4e984de0a2
No known key found for this signature in database
1 changed files with 33 additions and 3 deletions

View File

@ -18,9 +18,8 @@ tcp:
- data: ""
read: 256
- data: "EHLO x\r\n"
name: ehlo
read: 1024
- data: "HELP\r\n"
read: 2048
- data: "QUIT\r\n"
read: 8
@ -30,11 +29,42 @@ tcp:
matchers:
- type: word
name: ehlo
part: ehlo
words:
- "214"
- '250'
extractors:
- type: regex
part: ehlo
group: 1
regex:
- '250[\- ]([A-Z0-9 \-]+)'
- inputs:
- data: ""
read: 256
- data: "HELP\r\n"
name: help
read: 2048
- data: "QUIT\r\n"
read: 8
host:
- "{{Hostname}}"
port: 25,2525,465,587
matchers:
- type: word
name: help
part: help
words:
- '214'
extractors:
- type: regex
part: help
group: 1
regex:
- '214[\- ](.*)'
# digest: 4a0a00473045022054b4221e3e3c486ef9992134338fb8b67f69ddda932dc69aa6854955ae0ac5ce022100af7395e6f3ff1bb6cba3fb14943a501b01a2124e4f57f1c294233490c2b57c35:922c64590222798bb761d5b6d8e72950