mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 17:22:49 +01:00
Merge pull request #12732 from Security-Onion-Solutions/2.4/detections-defaults
Feature - auto-enabled Sigma rules
This commit is contained in:
@@ -1236,6 +1236,10 @@ soc:
|
|||||||
elastalertengine:
|
elastalertengine:
|
||||||
allowRegex: ''
|
allowRegex: ''
|
||||||
autoUpdateEnabled: true
|
autoUpdateEnabled: true
|
||||||
|
autoEnabledSigmaRules:
|
||||||
|
- core+critical
|
||||||
|
- securityonion-resources+critical
|
||||||
|
- securityonion-resources+high
|
||||||
communityRulesImportFrequencySeconds: 86400
|
communityRulesImportFrequencySeconds: 86400
|
||||||
denyRegex: ''
|
denyRegex: ''
|
||||||
elastAlertRulesFolder: /opt/sensoroni/elastalert
|
elastAlertRulesFolder: /opt/sensoroni/elastalert
|
||||||
|
|||||||
Reference in New Issue
Block a user