SigmaHQ/tools/sigma/backends
2020-07-08 14:09:26 +03:00
..
ala.py Improved test coverage 2020-06-13 01:11:08 +02:00
arcsight.py Added Humio, Crowdstrike, Corelight 2020-05-08 13:41:52 +03:00
base.py Cleanup: removal of corelight_* backends 2020-05-24 22:41:38 +02:00
carbonblack.py Add parentheses about field list groups in CB 2020-06-11 15:33:02 +02:00
csharp.py comments for usage 2020-04-11 15:47:23 +02:00
data.py Moved Sysmon schema XML from contrib directory into module 2019-03-16 00:59:29 +01:00
discovery.py Added Humio, Crowdstrike, Corelight 2020-05-08 13:41:52 +03:00
ee-outliers.py Updated author reference in license 2020-05-11 11:47:56 +02:00
elasticsearch.py Add more Options for XPackWatcherBackend (Elasticsearch) 2020-06-09 20:57:26 +02:00
exceptions.py Changed copyright notices accordingly 2018-07-24 00:01:16 +02:00
graylog.py Graylog backend now derived from es-qs 2019-11-02 22:56:01 +01:00
humio.py Added Humio, Crowdstrike, Corelight 2020-05-08 13:41:52 +03:00
limacharlie.py Added Humio, Crowdstrike, Corelight 2020-05-08 13:41:52 +03:00
logiq.py Fixes 2020-04-08 23:43:46 +02:00
logpoint.py Default configurations for backends 2019-11-03 23:32:50 +01:00
mdatp.py Updating the mdatp backend file as it is currently impossible to set an ActionType as there is no mapping to EventType 2020-06-30 14:49:29 +01:00
misc.py Conditional field mapping for null values 2019-04-25 23:24:05 +02:00
mixins.py Using rule ids as Kibana object id 2020-01-30 11:30:01 +01:00
netwitness.py Default configurations for backends 2019-11-03 23:32:50 +01:00
powershell.py Default configurations for backends 2019-11-03 23:32:50 +01:00
qradar.py Fixed undefined value in exception handling 2020-04-08 22:28:47 +02:00
qualys.py Default configurations for backends 2019-11-03 23:32:50 +01:00
splunk.py Cleanup: removal of corelight_* backends 2020-05-24 22:41:38 +02:00
sql.py Remove unused function 2020-05-30 01:57:06 +02:00
sqlite.py Remove unused function 2020-05-30 01:57:06 +02:00
stix.py Custom STIX object "x-sigma" for fields that missing mapping, so the pattern is STIX valid 2020-07-08 14:09:26 +03:00
sumologic.py Default configurations for backends 2019-11-03 23:32:50 +01:00
tools.py Conditional field mapping for null values 2019-04-25 23:24:05 +02:00