mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 17:22:49 +01:00
Merge pull request #6792 from Security-Onion-Solutions/kilo
Add case exclusion toggle to Hunt to avoid hunt results getting case …
This commit is contained in:
@@ -166,7 +166,9 @@
|
|||||||
"escalateRelatedEventsEnabled": {{ 'true' if CASE_MODULE == 'soc' else 'false' }},
|
"escalateRelatedEventsEnabled": {{ 'true' if CASE_MODULE == 'soc' else 'false' }},
|
||||||
"eventFields": {{ hunt_eventfields | json }},
|
"eventFields": {{ hunt_eventfields | json }},
|
||||||
"queryBaseFilter": "",
|
"queryBaseFilter": "",
|
||||||
"queryToggleFilters": [],
|
"queryToggleFilters": [
|
||||||
|
{ "name": "caseExcludeToggle", "filter": "NOT _index:so-case*", "enabled": true }
|
||||||
|
],
|
||||||
"queries": {{ hunt_queries | json }},
|
"queries": {{ hunt_queries | json }},
|
||||||
"actions": {{ menu_actions | json }}
|
"actions": {{ menu_actions | json }}
|
||||||
},
|
},
|
||||||
|
|||||||
Reference in New Issue
Block a user