这是indexloc提供的服务,不要输入任何密码
Skip to content

Tags: GTrunSec/dsiem

Tags

v0.26.2

Toggle v0.26.2's commit message
fix: APM err when setting tag for a closed Tx (defenxor#219)

v0.26.1

Toggle v0.26.1's commit message
fix: pass elasticsearch credential (defenxor#207)

v0.26.0

Toggle v0.26.0's commit message
feat: pass elasticsearch credentials (defenxor#206)

* feat: pass es credentials

* fix ng lint error

v0.25.4

Toggle v0.25.4's commit message
fix: calculate risk at the end of stage (defenxor#193)

Previously risk is calculated upon *entering* a correlation stage. This moves it to the end of stage for better alignment with OSSIM behavior.

Also in this commit: clean up of old coments, and minor refactor on processMatchedEvent()

v0.25.3

Toggle v0.25.3's commit message
perf: queue incoming events from NATS client lib (defenxor#190)

This change prevent NATS client lib from triggering slow consumer err,
and also prevent deadlock in a single directive from stalling the entire
pipeline.

v0.25.2

Toggle v0.25.2's commit message
fix: incorrect fieldname at detail alarm (defenxor#187)

v0.25.1

Toggle v0.25.1's commit message
fix: missing VA check for the 1st matching event (defenxor#186)

This is true when the 2nd and subsequent rules never refer to the same
IP/port combination in the first rule.

v0.25.0

Toggle v0.25.0's commit message
feat: option to enable intel check on priv IPs (defenxor#185)

* fix: custom data isnt updated on prev stage match

* feat: option to enable intel check on priv IPs

Useful for integration tests and demos

v0.24.1

Toggle v0.24.1's commit message
fix: unresponsive data table (defenxor#183)

v0.24.0

Toggle v0.24.0's commit message
feat: new directive option: all_rules_always_active (defenxor#181)

* add dockerbuild-dev.sh script

* add AllRulesAlwaysActive flag to directive struct

* add backlog processing for AllRulesALwaysActive

* update test files

* remove event count restriction in UI

* fix ng lint err