Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add / Remove Malicious Domains From Sinkhole #28197

Merged
merged 22 commits into from Aug 9, 2023
Merged

Conversation

idovandijk
Copy link
Contributor

@idovandijk idovandijk commented Jul 16, 2023

Status

Ready

Related Issues

fixes: https://jira-hq.paloaltonetworks.local/browse/CIAC-7206

Description

New playbooks that tag or remove tags from malicious domains to add them or remove them from the sinkhole configured in PAN-OS, using the Generic Export Indicators Service integration.

@idovandijk idovandijk requested a review from AdiPeret July 16, 2023 16:55
@content-bot
Copy link
Collaborator

This PR was automatically updated by a GitHub Action

  • PAN-OS pack version was bumped to 1.17.16.

To stop automatic version bumps, add the ignore-auto-bump-version label to the github PR.

@idovandijk
Copy link
Contributor Author

PR will be merged after tech docs and #27700

@ShirleyDenkberg
Copy link
Contributor

@melamedbn @AdiPeret @tomer-pan Doc review completed.

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
idovandijk and others added 6 commits August 9, 2023 18:23
…_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
…_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
…_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
…_From_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
…_From_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
@idovandijk idovandijk merged commit e1c91c5 into master Aug 9, 2023
13 of 14 checks passed
@idovandijk idovandijk deleted the add-domains-to-sinkhole branch August 9, 2023 17:17
xsoar-bot pushed a commit to xsoar-contrib/content that referenced this pull request Oct 5, 2023
* Add / remove domains from sinkhole

* Added playbooks, readmes and playbook images

* Added RN and bumped version

* Updated playbooks

* Updated playbooks and readme files

* Updated playbook name and all references. New name: "PAN-OS - Extract IPs From Traffic Logs To Sinkhole"

* Bump pack from version PAN-OS to 1.17.16.

* After review - updated playbooks, playbook images and playbook READMEs

* Apply suggestions from tech docs

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Update Packs/PAN-OS/Playbooks/PAN-OS_-_Job_-_Add_Malicious_Domains_To_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Update Packs/PAN-OS/Playbooks/PAN-OS_-_Job_-_Add_Malicious_Domains_To_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Update Packs/PAN-OS/Playbooks/PAN-OS_-_Job_-_Add_Malicious_Domains_To_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Update Packs/PAN-OS/Playbooks/PAN-OS_-_Job_-_Remove_Malicious_Domains_From_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Update Packs/PAN-OS/Playbooks/PAN-OS_-_Job_-_Remove_Malicious_Domains_From_Sinkhole.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

---------

Co-authored-by: Content Bot <bot@demisto.com>
Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
5 participants