weslambert
|
bc31e19e37
|
Put back rule.category for Wazuh alerts
|
2020-10-05 11:34:29 -04:00 |
|
Wes Lambert
|
77d31cb289
|
Add event.severity and event.severity_label config for Wazuh alerts
|
2020-10-05 12:50:29 +00:00 |
|
Wes Lambert
|
869767d9d9
|
Add initial parsing for Wazuh WEL/Sysmon
|
2020-09-28 19:04:21 +00:00 |
|
Wes Lambert
|
93c3c86e2f
|
update wazuh fields and category
|
2020-03-30 14:24:01 +00:00 |
|
Wes Lambert
|
9ad16e8c71
|
upadte ingest config
|
2020-03-11 12:13:53 +00:00 |
|
doug
|
8472b24a67
|
parse Bro logs using Elasticsearch ingest node
|
2019-09-23 16:04:23 -04:00 |
|