mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-08 02:02:50 +01:00
Replace external zeek-community-id with builtin community-id. Disable plugin-tds + plugin-profinet. Not updated for Zeek 6.x
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
This commit is contained in:
@@ -49,12 +49,13 @@ zeek:
|
|||||||
- frameworks/files/hash-all-files
|
- frameworks/files/hash-all-files
|
||||||
- frameworks/files/detect-MHR
|
- frameworks/files/detect-MHR
|
||||||
- policy/frameworks/notice/extend-email/hostnames
|
- policy/frameworks/notice/extend-email/hostnames
|
||||||
|
- policy/frameworks/notice/community-id
|
||||||
|
- policy/protocols/conn/community-id-logging
|
||||||
- ja3
|
- ja3
|
||||||
- hassh
|
- hassh
|
||||||
- intel
|
- intel
|
||||||
- cve-2020-0601
|
- cve-2020-0601
|
||||||
- securityonion/bpfconf
|
- securityonion/bpfconf
|
||||||
- securityonion/communityid
|
|
||||||
- securityonion/file-extraction
|
- securityonion/file-extraction
|
||||||
- oui-logging
|
- oui-logging
|
||||||
- icsnpp-modbus
|
- icsnpp-modbus
|
||||||
@@ -65,8 +66,8 @@ zeek:
|
|||||||
- icsnpp-opcua-binary
|
- icsnpp-opcua-binary
|
||||||
- icsnpp-bsap
|
- icsnpp-bsap
|
||||||
- icsnpp-s7comm
|
- icsnpp-s7comm
|
||||||
- zeek-plugin-tds
|
# - zeek-plugin-tds
|
||||||
- zeek-plugin-profinet
|
# - zeek-plugin-profinet
|
||||||
- zeek-spicy-wireguard
|
- zeek-spicy-wireguard
|
||||||
- zeek-spicy-stun
|
- zeek-spicy-stun
|
||||||
load-sigs:
|
load-sigs:
|
||||||
|
|||||||
Reference in New Issue
Block a user