mirror of
https://github.com/valitydev/SigmaHQ.git
synced 2024-11-08 18:23:52 +00:00
75ec169d5c
While utilizing Kibana to track watches directly from the watch index it became quickly apparent that useful metadata was not available. In my project's case it was the title, description and tags from the sigma rule. By adding them to the metadata field it makes it easier to utilize them in visualizations of the watches themselves. In the future perhaps the contents of the metadata field could be given as an option for each user. |
||
---|---|---|
.. | ||
ala.py | ||
arcsight.py | ||
base.py | ||
data.py | ||
discovery.py | ||
elasticsearch.py | ||
exceptions.py | ||
graylog.py | ||
logpoint.py | ||
misc.py | ||
mixins.py | ||
netwitness.py | ||
powershell.py | ||
qradar.py | ||
qualys.py | ||
splunk.py | ||
sumologic.py | ||
tools.py | ||
wdatp.py |