Skip to content

Commit

Permalink
update readme
Browse files Browse the repository at this point in the history
  • Loading branch information
inbalapt1 committed Jul 16, 2024
1 parent e7f3dd4 commit 2f6cb1c
Show file tree
Hide file tree
Showing 121 changed files with 501 additions and 307 deletions.
8 changes: 5 additions & 3 deletions Packs/AHA/Integrations/AHA/README.md
Original file line number Diff line number Diff line change
@@ -1,9 +1,11 @@
Use the Aha! integration to list and manage Cortex XSOAR features from Aha.
This integration was integrated and tested with API version December 02, 2022 release of Aha.

## Configure Aha on Cortex XSOAR
## Configure Aha on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for Aha.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -17,7 +19,7 @@ This integration was integrated and tested with API version December 02, 2022 re

4. Click **Test** to validate the URLs, token, and connection.
## Commands
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
### aha-get-features
***
Expand Down
4 changes: 2 additions & 2 deletions Packs/AMP/Integrations/AMP/README.md
Original file line number Diff line number Diff line change
@@ -1,7 +1,7 @@
Uses CISCO AMP Endpoint
This integration was integrated and tested with API version v1 of AMP

## Configure AMP on Cortex XSOAR
## Configure AMP on Cortex
---

1. Navigate to __Settings__ > __Integrations__ > __Servers & Services__.
Expand All @@ -15,7 +15,7 @@ This integration was integrated and tested with API version v1 of AMP

## Commands
---
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
1. amp_get_computers
2. amp_get_computer_by_connector
Expand Down
6 changes: 4 additions & 2 deletions Packs/AMP/Integrations/AMPv2/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,9 @@ This integration was integrated and tested with version 1 of CiscoAMP.

## Configure Cisco AMP Secure Endpoint on Cortex XSOAR

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for Cisco AMP Secure Endpoint.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -22,7 +24,7 @@ This integration was integrated and tested with version 1 of CiscoAMP.

4. Click **Test** to validate the URLs, token, and connection.
## Commands
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
### cisco-amp-computer-list
***
Expand Down
2 changes: 1 addition & 1 deletion Packs/AMP/Integrations/CiscoAMPEventCollector/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -5,7 +5,7 @@ This is the default integration for this content pack when configured by the Dat

## Configure Cisco AMP Event Collector on Cortex XSIAM

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. Navigate to **Settings** > **Data Sources** > **Add Data Source** > **Search**.
2. Search for Cisco AMP Event Collector.
3. Click **Add instance** to create and configure a new integration instance.

Expand Down
6 changes: 4 additions & 2 deletions Packs/ANYRUN/Integrations/ANYRUN/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,7 +8,9 @@ ANY.RUN is a cloud-based sanbox with interactive access.

## Configure ANYRUN on Cortex XSOAR

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for ANYRUN.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -25,7 +27,7 @@ ANY.RUN is a cloud-based sanbox with interactive access.
5. Click **Test** to validate the URLs, token, and connection.

## Commands
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
The commands allow you to launch and download only your own tasks, public submissions are not available at this point.

Expand Down
8 changes: 5 additions & 3 deletions Packs/APIVoid/Integrations/APIVoid/README.md
Original file line number Diff line number Diff line change
@@ -1,8 +1,10 @@
APIVoid wraps up a number of services such as ipvoid & urlvoid.

## Configure APIVoid on Cortex XSOAR
## Configure APIVoid on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for APIVoid.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -18,7 +20,7 @@ APIVoid wraps up a number of services such as ipvoid & urlvoid.

4. Click **Test** to validate the URLs, token, and connection.
## Commands
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
### apivoid-ip
***
Expand Down
Original file line number Diff line number Diff line change
@@ -1,8 +1,10 @@
The ARIA Cybesecurity Solutions Software-Defined Security (SDS) platform integrates with Cortex XSOAR to add robustness when responding to incidents. The combination of ARIA hardware, in the form of a Secure Intelligent Adapter (SIA), and software, specifically Packet Intelligence and SDS orchestrator (SDSo), provides the elements required to react instantly when an incident is detected. When integrated with the ARIA solution, you can create playbooks that instruct one or more SIAs to add, modify, or delete rules automatically. These rule changes, which take effect immediately, can block conversations, redirect packets to a recorder or VLAN, or perform a variety of other actions.
This integration was integrated and tested with version 1.0.9 of ARIA Packet Intelligence
## Configure ARIA Packet Intelligence on Cortex XSOAR
## Configure ARIA Packet Intelligence on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for ARIA Packet Intelligence.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -14,7 +16,7 @@ This integration was integrated and tested with version 1.0.9 of ARIA Packet Int

4. Click **Test** to validate the URLs, token, and connection.
## Commands
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.

Note that all commands support a remediation configuration string (RCS). It is a set of parameters that defines how and
Expand Down
8 changes: 5 additions & 3 deletions Packs/AWS-ACM/Integrations/AWS-ACM/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -4,9 +4,11 @@ For more information regarding the AWS ACM service, please visit the official do

For detailed instructions about setting up authentication, see: [AWS Integrations - Authentication](https://xsoar.pan.dev/docs/reference/articles/aws-integrations---authentication).

## Configure AWS - ACM on Cortex XSOAR
## Configure AWS - ACM on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for AWS - ACM.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -25,7 +27,7 @@ For detailed instructions about setting up authentication, see: [AWS Integration

4. Click **Test** to validate the URLs, token, and connection.
## Commands
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
### aws-acm-describe-certificate
***
Expand Down
Original file line number Diff line number Diff line change
@@ -1,9 +1,11 @@
Amazon Web Services IAM Access Analyzer

For detailed instructions about setting up authentication, see: [AWS Integrations - Authentication](https://xsoar.pan.dev/docs/reference/articles/aws-integrations---authentication).
## Configure AWS - AccessAnalyzer on Cortex XSOAR
## Configure AWS - AccessAnalyzer on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for AWS - AccessAnalyzer.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -29,7 +31,7 @@ For detailed instructions about setting up authentication, see: [AWS Integration
The integration fetches findings, generated by the analyzer specified in the ***Fetch Analyzer ARN*** parameter, as incidents.

## Commands
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
### aws-access-analyzer-list-analyzers

Expand Down
8 changes: 5 additions & 3 deletions Packs/AWS-Athena/Integrations/AWS-Athena/README.md
Original file line number Diff line number Diff line change
@@ -1,8 +1,10 @@
Amazon Web Services Athena.

## Configure AWS - Athena on Cortex XSOAR
## Configure AWS - Athena on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for AWS - Athena.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -23,7 +25,7 @@ Amazon Web Services Athena.

## Commands

You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.

### aws-athena-execute-query
Expand Down
8 changes: 5 additions & 3 deletions Packs/AWS-CloudTrail/Integrations/AWS-CloudTrail/README.md
Original file line number Diff line number Diff line change
@@ -1,9 +1,11 @@
Amazon Web Services CloudTrail.
This integration was integrated and tested with version 1.0.11 of AWS - CloudTrail.

## Configure AWS - CloudTrail on Cortex XSOAR
## Configure AWS - CloudTrail on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for AWS - CloudTrail.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -24,7 +26,7 @@ This integration was integrated and tested with version 1.0.11 of AWS - CloudTra

## Commands

You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.

### aws-cloudtrail-create-trail
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -22,7 +22,7 @@
<li>Click <strong>Test</strong> to validate the URLs, token, and connection.</li>
</ol>
<h2>Commands</h2>
<p>You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.<br>After you successfully execute a command, a DBot message appears in the War Room with the command details.</p>
<p>You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.<br>After you successfully execute a command, a DBot message appears in the War Room with the command details.</p>
<ol>
<li><a href="#h_97524814141539170450412">Create a log group: aws-logs-create-log-group</a></li>
<li><a href="#h_5057555411231539170456210">Create a log stream: aws-logs-create-log-stream</a></li>
Expand Down
8 changes: 5 additions & 3 deletions Packs/AWS-EC2/Integrations/AWS-EC2/README.md
Original file line number Diff line number Diff line change
@@ -1,8 +1,10 @@
Amazon Web Services Elastic Compute Cloud (EC2).

## Configure AWS - EC2 on Cortex XSOAR
## Configure AWS - EC2 on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for AWS - EC2.
3. Click **Add instance** to create and configure a new integration instance.

Expand Down Expand Up @@ -53,7 +55,7 @@ The script ***AwsEC2SyncAccounts*** can be used to configure an AWS - EC2 instan

## Commands

You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.

### aws-ec2-describe-instances
Expand Down
8 changes: 5 additions & 3 deletions Packs/AWS-EKS/Integrations/AWSEKS/README.md
Original file line number Diff line number Diff line change
@@ -1,9 +1,11 @@
The AWS EKS integration allows for the management and operation of Amazon Elastic Kubernetes Service (EKS) clusters.
This integration was integrated and tested with version 1.29 of AWS-EKS.

## Configure AWS-EKS on Cortex XSOAR
## Configure AWS-EKS on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for AWS-EKS.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -21,7 +23,7 @@ This integration was integrated and tested with version 1.29 of AWS-EKS.

## Commands

You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.

### aws-eks-list-clusters
Expand Down
8 changes: 5 additions & 3 deletions Packs/AWS-GuardDuty/Integrations/AWSGuardDuty/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -16,9 +16,11 @@ the [Amazon AWS Integrations Configuration Guide](https://xsoar.pan.dev/docs/ref
Some changes have been made that might affect your existing content.
If you are upgrading from a previous of this integration, see [Breaking Changes](#breaking-changes-from-the-previous-version-of-this-integration---aws-guardduty).

## Configure AWS - GuardDuty on Cortex XSOAR
## Configure AWS - GuardDuty on Cortex

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for AWS - GuardDuty.
3. Click **Add instance** to create and configure a new integration instance.

Expand Down Expand Up @@ -55,7 +57,7 @@ If you are upgrading from a previous of this integration, see [Breaking Changes]

## Commands

You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook. After you successfully
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook. After you successfully
execute a command, a DBot message appears in the War Room with the command details.

### aws-gd-create-detector
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@ Amazon Web Services Guard Duty Service Event Collector integration for Cortex XS

This is the default integration for this content pack when configured by the Data Onboarder in Cortex XSIAM.

## Configure AWS - GuardDuty Event Collector on Cortex XSOAR
## Configure AWS - GuardDuty Event Collector on Cortex XSIAM

1. Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation and Feed Integrations**.
2. Search for AWS - GuardDuty Event Collector.
Expand All @@ -27,7 +27,7 @@ This is the default integration for this content pack when configured by the Dat

4. Click **Test** to validate the URLs, token, and connection.
## Commands
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex XSIAM CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
### aws-gd-get-events
***
Expand Down
6 changes: 4 additions & 2 deletions Packs/AWS-IAM/Integrations/AWS-IAM/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -5,7 +5,9 @@ For detailed instructions about setting up authentication, see: [AWS Integration

## Configure AWS - IAM on Cortex XSOAR

1. Navigate to **Settings** > **Integrations** > **Servers & Services**.
1. * For XSOAR 6.x users: Navigate to **Settings** > **Integrations** > **Instances**.
* For XSOAR 8.x users: Navigate to **Settings & Info** > **Settings** > **Integrations** > **Instances**.
* For XSIAM users: Navigate to **Settings** > **Configurations** > **Data Collection** > **Automation & Feed Integrations**.
2. Search for AWS - IAM.
3. Click **Add instance** to create and configure a new integration instance.

Expand All @@ -24,7 +26,7 @@ For detailed instructions about setting up authentication, see: [AWS Integration

4. Click **Test** to validate the URLs, token, and connection.
## Commands
You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook.
You can execute these commands from the Cortex CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
### aws-iam-create-user
***
Expand Down
Loading

0 comments on commit 2f6cb1c

Please sign in to comment.