mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2026-10-08 15:25:26 +02:00
Compare commits
1
Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
b11fc6257a |
No files matched your search
@@ -1542,6 +1542,8 @@ soc:
|
|||||||
Orchestrator: sonnet@SOAI
|
Orchestrator: sonnet@SOAI
|
||||||
Investigator: gemma@SOAI
|
Investigator: gemma@SOAI
|
||||||
DetectionEngineer: gemma@SOAI
|
DetectionEngineer: gemma@SOAI
|
||||||
|
AlertTriage: gemma@SOAI
|
||||||
|
Notifier: gemma@SOAI
|
||||||
useMemory: false
|
useMemory: false
|
||||||
useMemoryScanner: false
|
useMemoryScanner: false
|
||||||
dontScanBefore: ""
|
dontScanBefore: ""
|
||||||
|
|||||||
@@ -937,6 +937,12 @@ soc:
|
|||||||
DetectionEngineer:
|
DetectionEngineer:
|
||||||
description: This agent manages detections and their overrides, including tuning noisy rules and authoring rule content.
|
description: This agent manages detections and their overrides, including tuning noisy rules and authoring rule content.
|
||||||
global: True
|
global: True
|
||||||
|
AlertTriage:
|
||||||
|
description: This agent triages alerts autonomously for the Alert Triage automation, ending each run with a report and an assessment of the alert. It can notify through the Notifier but cannot acknowledge alerts or escalate to cases.
|
||||||
|
global: True
|
||||||
|
Notifier:
|
||||||
|
description: This agent sends a single notification on behalf of another agent, such as AlertTriage, and takes no other action.
|
||||||
|
global: True
|
||||||
useMemory:
|
useMemory:
|
||||||
description: Enables the Memory system for OnionAI
|
description: Enables the Memory system for OnionAI
|
||||||
global: True
|
global: True
|
||||||
|
|||||||
Reference in new issue
Block a user