Skip to content
Discussion options

You must be logged in to vote

You would want to make sure there is a sigma rule in Detections enabled. That would generate alerts based on matches.

If you do not see one that covers your use case, there is a template in Detections where you can tailor a sigma rule to your specific detection.

Replies: 1 comment 6 replies

Comment options

You must be logged in to vote
6 replies
@cm-ops
Comment options

@cslewis2-Devnet
Comment options

@cslewis2-Devnet
Comment options

@cm-ops
Comment options

Answer selected by cslewis2-Devnet
@cslewis2-Devnet
Comment options

@cm-ops
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
2.4
Labels
None yet
2 participants