mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 09:12:45 +01:00
Feature - auto-enabled Sigma rules
This commit is contained in:
@@ -1216,6 +1216,10 @@ soc:
|
|||||||
elastalertengine:
|
elastalertengine:
|
||||||
allowRegex: ''
|
allowRegex: ''
|
||||||
autoUpdateEnabled: true
|
autoUpdateEnabled: true
|
||||||
|
autoEnabledSigmaRules:
|
||||||
|
- core+critical
|
||||||
|
- securityonion-resources+critical
|
||||||
|
- securityonion-resources+high
|
||||||
communityRulesImportFrequencySeconds: 86400
|
communityRulesImportFrequencySeconds: 86400
|
||||||
denyRegex: ''
|
denyRegex: ''
|
||||||
elastAlertRulesFolder: /opt/sensoroni/elastalert
|
elastAlertRulesFolder: /opt/sensoroni/elastalert
|
||||||
|
|||||||
Reference in New Issue
Block a user