Update azure_kubernetes_events_deleted.yml

This commit is contained in:
Florian Roth 2021-07-27 08:07:00 +02:00 committed by GitHub
parent 9a9f0cf594
commit ade5e80f9d
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -11,7 +11,7 @@ logsource:
service: azure.activitylogs service: azure.activitylogs
detection: detection:
selection_operation_name: selection_operation_name:
- properties.message: MICROSOFT.KUBERNETES/CONNECTEDCLUSTERS/EVENTS.K8S.IO/EVENTS/DELETE properties.message: MICROSOFT.KUBERNETES/CONNECTEDCLUSTERS/EVENTS.K8S.IO/EVENTS/DELETE
condition: selection_operation_name condition: selection_operation_name
level: medium level: medium
tags: tags: