New Settings for Manual Sync in Detections

This commit is contained in:
Corey Ogburn
2024-03-29 12:25:03 -06:00
parent cc2164221c
commit e747a4e3fe

View File

@@ -1993,6 +1993,13 @@ soc:
mostRecentlyUsedLimit: 5 mostRecentlyUsedLimit: 5
safeStringMaxLength: 100 safeStringMaxLength: 100
queryBaseFilter: '_index:"*:so-detection" AND so_kind:detection' queryBaseFilter: '_index:"*:so-detection" AND so_kind:detection'
presets:
manualSync:
customEnabled:false
labels:
- Suricata
- Strelka
- ElastAlert
eventFields: eventFields:
default: default:
- so_detection.title - so_detection.title