Merge pull request #12696 from Security-Onion-Solutions/cogburn/manual-sync

New Settings for Manual Sync in Detections
This commit is contained in:
coreyogburn
2024-03-29 12:43:08 -06:00
committed by GitHub

View File

@@ -1993,6 +1993,13 @@ soc:
mostRecentlyUsedLimit: 5
safeStringMaxLength: 100
queryBaseFilter: '_index:"*:so-detection" AND so_kind:detection'
presets:
manualSync:
customEnabled:false
labels:
- Suricata
- Strelka
- ElastAlert
eventFields:
default:
- so_detection.title