SigmaHQ/tools/config
Thomas Patzke a61b3d352a Added test cases
* Generic log sources
* Splunk index queries
2018-10-15 15:24:18 +02:00
..
generic Stacked configurations 2018-09-12 23:40:22 +02:00
arcsight.yml Added ArcSight & Qualys backends 2018-06-07 16:18:23 +03:00
elk-defaultindex-filebeat.yml Added default index configs for usual ELK setups 2017-11-09 10:05:41 +01:00
elk-defaultindex-logstash.yml Added default index configs for usual ELK setups 2017-11-09 10:05:41 +01:00
elk-defaultindex.yml Added ELK default index config 2017-10-23 00:45:33 +02:00
elk-linux.yml Added default index handling 2017-10-23 00:08:39 +02:00
elk-windows.yml Added Windows Driver Framework log source to configs 2017-11-09 08:42:58 +01:00
helk.yml Added field name mappings to HELK configuration 2018-03-27 14:41:02 +02:00
logpoint-windows-all.yml Various rule fixes 2018-03-27 14:35:49 +02:00
qradar.yml Added Qradar backend 2018-07-17 15:25:06 +03:00
qualys.yml Added ArcSight & Qualys backends 2018-06-07 16:18:23 +03:00
spark.yml Config file for SPARK scanner 2018-06-29 16:42:16 +02:00
splunk-windows-all-index.yml Added test cases 2018-10-15 15:24:18 +02:00
splunk-windows-all.yml Windows NTLM 2018-06-13 00:08:46 +02:00