Commit Graph

10 Commits

Author SHA1 Message Date
Wydra Mateusz
2ca5aeeb83 bind/passive dns 2019-10-25 01:35:40 +02:00
yugoslavskiy
91e18d6a5b add DN_0096, DN_0097 and LP_0034 2019-08-29 02:49:55 +03:00
yugoslavskiy
c8c4f048c2 add auditd DNs and LPs 2019-08-22 02:11:09 +03:00
yugoslavskiy
68d4929a53 general update:
- DN calc function updated, fixed incorrect calc for multiple DRs
- updated all LPs with a preparation for a new feature (sucess/fail LP config calculcation per DR/EID)
- all the stuff (md/confluence) has been updated according to changes

updated with a log source sample:

- DN_0046_1031_dhcp_service_callout_dll_file_has_caused_an_exception.yml
- DN_0047_1032_dhcp_service_callout_dll_file_has_caused_an_exception.yml
- DN_0049_1034_dhcp_service_failed_to_load_callout_dlls.yml

created:

- DN_0086_4720_user_account_was_created.yml
- DN_0087_5156_windows_filtering_platform_has_permitted_connection.yml
- DN_0088_4616_system_time_was_changed.yml
- DN_0089_56_terminal_server_security_layer_detected_an_error.yml
- DN_0090_50_terminal_server_security_layer_detected_an_error.yml
- LP_0045_windows_audit_filtering_platform_connection.yml
- LP_0046_windows_audit_security_state_change.yml
2019-07-12 06:38:49 +03:00
zackpayton
0461d989ed
small spelling mistake ini LP_0011_windows_sysmon_DnsQuery.yml 2019-07-09 17:42:12 -07:00
yugoslavskiy
b15925d3a0 sysmon event id 22 (dns queries) added 2019-06-24 04:37:21 +02:00
yugoslavskiy
69dbd5bd88 new dn and lp 2019-04-22 05:18:31 +02:00
yugoslavskiy
69c0a64e78 fixed issue #99 2019-03-03 01:40:08 +01:00
Matt Bobrowski
69286927a4 logging_policies/LP_0007_windows_sysmon_ProcessAccess.yml: Fixed XML node
Simple correction applied to closing XML node.

Signed-off-by: Matthew Bobrowski <mbobrowski@mbobrowski.org>
2019-02-28 12:34:37 +11:00
yugoslavskiy
f79f50bec3 changed directories names 2019-02-12 04:55:11 +01:00