Description This article describes the steps to integrate Sysmon with
FortiSIEM. Sysmon is a powerful Windows Monitoring Tool which helps
increasing situational awareness by mapping network traffic to the
system processes and network users. Furthermo...
you can copy the values of these indicators adding a special tag (say:
CR1) to the threat feeds module, then create a collection using the tag
as filter. Finally use the collection url to download the content as
csv. You may not need that custom modu...
Hi Nelson, you can create a link to run a playbook as follows:"[BUTTON_TITLE]where, , is
the UUID of the playbook (manual trigger or reference) that you want to
trigger, and BUTTON_TITLE is the actual name of the button. Dashboards,
Templates, and Wi...
I'd add:- Add a variable for each connector action to store vars.result.
This simplify debugging since previous steps (vars.steps.*) are not
usable in the Jinja Editor - The sensitive playbooks should all be
private so only selected individuals can r...