mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-07 09:42:46 +01:00
Update analyzer docs with information about analyzers that require authentication
This commit is contained in:
@@ -18,6 +18,23 @@ The built-in analyzers support the following observable types:
|
||||
| Urlscan |✗ |✗|✗|✗|✗|✗|✗|✓|✗|
|
||||
| Virustotal |✓ |✓|✓|✗|✗|✗|✗|✓|✗|
|
||||
|
||||
## Authentication
|
||||
Many analyzers require authentication, via an API key or similar. The table below illustrates which analyzers require authentication.
|
||||
|
||||
| Name | Authn Req'd|
|
||||
--------------------------|------------|
|
||||
[Alienvault OTX](https://otx.alienvault.com/api) |✓|
|
||||
[EmailRep](https://emailrep.io/key) |✓|
|
||||
[Greynoise](https://www.greynoise.io/plans/community) |✓|
|
||||
JA3er |✗|
|
||||
LocalFile |✗|
|
||||
[Pulsedive](https://pulsedive.com/api/) |✓|
|
||||
Spamhaus |✗|
|
||||
Urlhaus |✗|
|
||||
[Urlscan](https://urlscan.io/docs/api/) |✓|
|
||||
[Virustotal](https://developers.virustotal.com/reference/overview) |✓|
|
||||
|
||||
|
||||
## Developer Guide
|
||||
|
||||
### Python
|
||||
|
||||
Reference in New Issue
Block a user