mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-10 19:22:54 +01:00
Use module in dataset name and add dataset tag
This commit is contained in:
@@ -5,7 +5,7 @@ elasticsearch_host: "{{ GLOBALS.url_base }}:9200"
|
||||
play_title: ""
|
||||
play_id: ""
|
||||
event.module: "playbook"
|
||||
event.dataset: "alert"
|
||||
event.dataset: "playbook.alert"
|
||||
event.severity:
|
||||
rule.category:
|
||||
play_url: "https://{{ GLOBALS.url_base }}/playbook/issues/6000"
|
||||
|
||||
Reference in New Issue
Block a user