Граф коммитов

3674 Коммитов

Автор SHA1 Сообщение Дата
A Smith 9abad28a43
Merge pull request #1004 from mozilla/key_update_for_pulseguardian
updating key fields for pulseguardian events to move source_ip to sou…
2018-12-18 17:41:47 -06:00
A Smith 7215580095
Merge pull request #964 from mozilla/lower_keys
Lower keys
2018-12-18 17:41:27 -06:00
Brandon Myers 97409a248c
Merge pull request #995 from mozilla/add_port_details_root
Move source port and destination port to details root
2018-12-18 12:48:56 -06:00
Brandon Myers 5c0ad15d8a
Merge pull request #1006 from mozilla/fix_unused_imports
Remove unused imports
2018-12-17 17:41:34 -06:00
Brandon Myers d54b5a156c
Remove unused imports 2018-12-17 17:27:14 -06:00
Michal Purzynski 3ecbe03b49
Merge pull request #947 from mpurzynski/nsm_scan_address
The standard alert version of the Address_Scan
2018-12-17 12:34:15 -08:00
Michal Purzynski e7af7c93ee
Merge pull request #946 from mpurzynski/nsm_scan_random_pr
Hopefuly a final version of an alert that catches a Random_Scan
2018-12-17 12:34:04 -08:00
Phrozyn 365c565023
updating key fields for pulseguardian events to move source_ip to sourceipaddress. 2018-12-17 10:58:39 -06:00
Brandon Myers 7dfc6ad913
Merge pull request #1003 from mozilla/generic_logincounts
Generic logincounts
2018-12-17 10:24:31 -06:00
Jeff Bryner 92d5c79cf6 fixup tests 2018-12-15 14:54:31 -08:00
Jeff Bryner 690f79627e rm unused imports 2018-12-15 14:19:07 -08:00
Jeff Bryner 281df5324c update spacing 2018-12-14 15:30:25 -08:00
Jeff Bryner 1f4d7817f3 rename/rework query 2018-12-14 15:22:09 -08:00
Brandon Myers 81b79015d2
Merge pull request #1002 from mozilla/update_request_version_dependencies
Update requests version
2018-12-14 17:19:24 -06:00
Brandon Myers 3f9e667611
Merge pull request #1001 from mozilla/update_urllib_version
Update urllib3 version
2018-12-14 17:19:05 -06:00
Brandon Myers 06f1b59f45
Merge pull request #1000 from mozilla/remove_unused_mozdef_util_files
Remove unused cookie cutter files for mozdef_util
2018-12-14 17:18:37 -06:00
Brandon Myers 8af926d9ef
Merge pull request #998 from mozilla/enable_library_unused_pep8_check
Enable library unused pep8 check
2018-12-14 17:18:25 -06:00
Brandon Myers e1643cf3e2
Update requests version 2018-12-14 15:21:07 -06:00
Brandon Myers 9c35aa02a9
Update urllib3 version 2018-12-14 15:18:21 -06:00
Brandon Myers 92721f1754
Merge pull request #999 from mozilla/auth0_category_fix
match mozdef_client's expectation for set_category
2018-12-14 15:21:24 -05:00
Brandon Myers 2b47045a4b
Remove unused cookie cutter files 2018-12-14 14:19:50 -06:00
Brandon Myers 46be867d2f
Fixup unused variables check 2018-12-14 14:06:21 -06:00
Brandon Myers df84a1942d
Fixup block comments not having a space after hash 2018-12-14 13:40:07 -06:00
Brandon Myers 77e93f3fd8
Fixup missing whitespace around modulo operator 2018-12-14 12:53:25 -06:00
Brandon Myers be7788089d
Fixup missing whitespace around arithmetic operator 2018-12-14 12:49:25 -06:00
Brandon Myers 09989706a0
Fixup closing bracket indentation not matching original 2018-12-14 12:39:23 -06:00
Brandon Myers 4d5f70295c
Fixup redefinition of unused import statements 2018-12-14 12:35:18 -06:00
Jeff Bryner feaa882e99 match mozdef_client's expectation for set_category 2018-12-14 10:33:04 -08:00
Brandon Myers 0d7ece3d05
Fixup W503 line break before binary operation 2018-12-14 12:31:08 -06:00
Brandon Myers 07f5072946
Remove duplicate keyname in dict 2018-12-14 12:29:04 -06:00
Brandon Myers d04485c850
Fixup pep8 undefined library 2018-12-14 12:27:57 -06:00
Brandon Myers 00c6715ddf
More specific ignore in flake8 config 2018-12-14 11:39:18 -06:00
Brandon Myers fc771bd531
Remove unused import statements 2018-12-14 11:34:42 -06:00
Brandon Myers 65a29dff39
Merge pull request #997 from mozilla/jeffbryner-setter-1
update category set
2018-12-14 12:33:24 -05:00
Jeff Bryner e7cd202d77
update category set
use the setter in the mozdef_client object we are using, rather than set a dict key
2018-12-13 16:36:47 -08:00
Brandon Myers e77b791c8a
Merge pull request #934 from mpurzynski/githubevent_pr
A MozDef plugin that parses GitHub's Webhook events to create meaning…
2018-12-13 15:52:41 -05:00
Michal Purzynski 9693dfa58e Address nits from the review - use mozdef_util instead of changing the path, remove unnecessary config file 2018-12-12 12:47:12 -08:00
Brandon Myers dc3eae0548
Merge pull request #996 from mozilla/duo_fixup
Duo fixup
2018-12-12 12:57:45 -05:00
Jeff Bryner 8983cd12ec tabs/spaces fix 2018-12-12 09:37:53 -08:00
Brandon Myers 20777432b7
Merge pull request #992 from mozilla/event_source
explicitly accept/map 'source' field, closes #991
2018-12-12 11:27:32 -05:00
Jeff Bryner ef25be321a update docs for auth event sync 2018-12-11 16:33:11 -08:00
Jeff Bryner 72c51b64a9 success only on true, catch other ip field 2018-12-11 16:03:33 -08:00
Jeff Bryner c774d5921b set details.success to match auth0, other auth sources 2018-12-11 15:59:35 -08:00
Jeff Bryner d7de9ee7af fix the test assert 2018-12-11 09:27:40 -08:00
Brandon Myers 4e28602162
Move source port and destination port to details root 2018-12-10 01:55:54 -05:00
Brandon Myers 809cd91a97
Merge pull request #994 from mozilla/fix-proxy_drop_exfil_domains-alert
Proposing fix and a change for proxy alert on exfil domains
2018-12-06 17:48:03 -05:00
Brandon Myers f6ba4968da
Merge pull request #977 from gene1wood/remove-cloudy-mozdef-defaults
Remove CloudFormation template defaults
2018-12-06 17:31:19 -05:00
Cag 43f9ae4463
Minor fix to reflect change in the config file name 2018-12-06 13:43:46 -05:00
Cag c39ac343dc
Renaming the config file to reflect the change in alert name 2018-12-05 18:14:53 -05:00
Cag 3a7dcea53b
Proposing fix and a change for proxy alert on exfil domains 2018-12-05 17:59:43 -05:00