Removed unneeded groupby

This commit is contained in:
DefensiveDepth
2024-05-21 17:53:20 -04:00
parent 3992ef1082
commit f9e9b825cf

View File

@@ -2020,7 +2020,6 @@ soc:
- event_data.destination.port
- event_data.process.executable
- event_data.process.pid
- rule.uuid
':sigma:':
- soc_timestamp
- event.dataset
@@ -2034,7 +2033,6 @@ soc:
- event_data.destination.port
- event_data.process.executable
- event_data.process.pid
- rule.uuid
':strelka:':
- soc_timestamp
- event.dataset
@@ -2044,7 +2042,6 @@ soc:
- file.source
- file.mime_type
- log.id.fuid
- rule.uuid
queryBaseFilter: tags:alert
queryToggleFilters:
- name: acknowledged