adding kind property to exisitng templates
This commit is contained in:
Родитель
bdf622b995
Коммит
236af239c5
|
@ -43,3 +43,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -37,3 +37,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -38,4 +38,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.1.0
|
||||
|
||||
kind: scheduled
|
|
@ -50,3 +50,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -40,3 +40,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.2.0
|
||||
kind: scheduled
|
|
@ -35,3 +35,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.2.0
|
||||
kind: scheduled
|
|
@ -66,3 +66,4 @@ customDetails:
|
|||
DnsQuery: DnsQuery
|
||||
QueryType: QueryType
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -35,3 +35,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.2.0
|
||||
kind: scheduled
|
|
@ -49,3 +49,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -75,3 +75,4 @@ customDetails:
|
|||
SubType: SubType
|
||||
DnsQuery: DnsQuery
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -46,3 +46,4 @@ entityMappings:
|
|||
- identifier: Value
|
||||
columnName: FileHashCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -53,3 +53,4 @@ entityMappings:
|
|||
- identifier: Value
|
||||
columnName: FileHashCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -37,3 +37,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: HostCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -51,3 +51,4 @@ entityMappings:
|
|||
- identifier: Value
|
||||
columnName: FileHashCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -39,3 +39,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: HostCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -39,3 +39,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: HostCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -36,3 +36,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -38,3 +38,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -37,3 +37,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -40,3 +40,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -37,3 +37,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -70,3 +70,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -37,3 +37,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -38,3 +38,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -28,3 +28,4 @@ query: |
|
|||
| lookup kind=leftouter SeverityTable on Severity
|
||||
| order by Level
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -19,3 +19,4 @@ query: |
|
|||
afad_parser
|
||||
| where MessageType == 2 and Codename == "DCShadow"
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -19,3 +19,4 @@ query: |
|
|||
afad_parser
|
||||
| where MessageType == 2 and Codename == "DCSync"
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -19,3 +19,4 @@ query: |
|
|||
afad_parser
|
||||
| where MessageType == 2 and Codename == "Golden Ticket"
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -27,3 +27,4 @@ query: |
|
|||
| lookup kind=leftouter SeverityTable on Severity
|
||||
| order by Level
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -27,3 +27,4 @@ query: |
|
|||
| lookup kind=leftouter SeverityTable on Severity
|
||||
| order by Level
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -19,3 +19,4 @@ query: |
|
|||
afad_parser
|
||||
| where MessageType == 2 and Codename == "OS Credential Dumping: LSASS Memory"
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -19,3 +19,4 @@ query: |
|
|||
afad_parser
|
||||
| where MessageType == 2 and Codename == "Password Guessing"
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -28,3 +28,4 @@ query: |
|
|||
| lookup kind=leftouter SeverityTable on Severity
|
||||
| order by Level
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -19,3 +19,4 @@ query: |
|
|||
afad_parser
|
||||
| where MessageType == 2 and Codename == "Password Spraying"
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -28,3 +28,4 @@ query: |
|
|||
| lookup kind=leftouter SeverityTable on Severity
|
||||
| order by Level
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -28,3 +28,4 @@ query: |
|
|||
| lookup kind=leftouter SeverityTable on Severity
|
||||
| order by Level
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -58,3 +58,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -67,3 +67,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -56,3 +56,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -55,3 +55,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -71,3 +71,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -71,3 +71,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -58,3 +58,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -78,3 +78,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -69,3 +69,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -58,3 +58,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: TargetUserPrincipalName
|
||||
version: 1.0.1
|
||||
kind: scheduled
|
|
@ -40,3 +40,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -41,3 +41,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -46,3 +46,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -61,3 +61,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -43,3 +43,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -46,3 +46,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -35,3 +35,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -47,3 +47,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -51,3 +51,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.1.0
|
||||
kind: scheduled
|
|
@ -20,3 +20,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: HostCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -20,3 +20,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: HostCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -46,3 +46,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -28,3 +28,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -31,3 +31,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -28,3 +28,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -55,3 +55,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -34,3 +34,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -43,3 +43,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -39,3 +39,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -40,3 +40,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -59,3 +59,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -42,3 +42,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -57,3 +57,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: DeletingIP
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -39,3 +39,4 @@ query: |
|
|||
strcat('https://dev.azure.com/', OrganizationName, '/', ProjectName, '/_release?_a=releases&view=mine&definitionId=', DefId))
|
||||
| extend timestamp = StartTime
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -45,3 +45,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -62,3 +62,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -40,3 +40,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -41,3 +41,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -53,3 +53,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -57,3 +57,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -74,3 +74,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -44,3 +44,4 @@ entityMappings:
|
|||
- identifier: Url
|
||||
columnName: URLCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -34,3 +34,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -41,3 +41,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -32,3 +32,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -32,3 +32,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -80,3 +80,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -33,3 +33,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -38,3 +38,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -51,3 +51,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -36,3 +36,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -33,3 +33,4 @@ entityMappings:
|
|||
- identifier: Address
|
||||
columnName: IPCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
|
@ -29,3 +29,4 @@ entityMappings:
|
|||
- identifier: FullName
|
||||
columnName: AccountCustomEntity
|
||||
version: 1.0.0
|
||||
kind: scheduled
|
Некоторые файлы не были показаны из-за слишком большого количества измененных файлов Показать больше
Загрузка…
Ссылка в новой задаче