Azure-Sentinel/Solutions/Farsight DNSDB/Playbooks/DNSDB_Historical_Hosts
Rambatla Venkat Rao 0205fb07bc
Removed locals in the links
2021-11-18 11:28:26 +05:30
..
Graphics Farsight DNSDB Playbook Templates - Initial Commit 2021-10-08 14:56:23 +05:30
azuredeploy.json Removed locals in the links 2021-11-18 11:28:26 +05:30
readme.md Update readme.md 2021-10-08 15:15:50 +05:30

readme.md

DNSDB_Historical_Hosts

author: Henry Stern, Farsight Security, Inc.

This playbook uses the Farsight DNSDB connector to automatically enrich IP Addresses found in the Sentinel incidents. This use case describes the desire to identify all Hosts that resolved to a given Address based on a time window from a starting and stopping point in time. Learn more about the integration via the https://docs.microsoft.com/connectors/farsightdnsdb/ or visit https://www.farsightsecurity.com/about-farsight-security/contacts/ to request a trial key.

Screenshots

Incident Comments

Deploy to Azure

Deploy to Azure Gov