Actually add files
This commit is contained in:
@@ -69,3 +69,7 @@ iseval = 0
|
||||
[remote_thread_whitelist]
|
||||
definition = search NOT [| inputlookup threathunting_remote_thread_whitelist.csv | fields mitre_technique_id host_fqdn process_name target_process_path target_process_address]
|
||||
iseval = 0
|
||||
|
||||
[indextime]
|
||||
definition = _index_earliest=-15m@m AND _index_latest=now
|
||||
iseval = 0
|
||||
|
||||
Reference in New Issue
Block a user