Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add supportlevelheader to partner collectors #30084

Merged
merged 16 commits into from Oct 22, 2023
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Jump to
Jump to file
Failed to load files.
Diff view
Diff view
Expand Up @@ -40,10 +40,11 @@ script:
- 'True'
- 'False'
required: true
dockerimage: demisto/python3:3.10.13.75921
dockerimage: demisto/python3:3.10.13.78960
isfetchevents: true
subtype: python3
fromversion: 6.8.0
supportlevelheader: xsoar
marketplaces:
- marketplacev2
tests:
Expand Down
6 changes: 6 additions & 0 deletions Packs/AbnormalSecurity/ReleaseNotes/2_1_1.md
@@ -0,0 +1,6 @@

#### Integrations

##### Abnormal Security Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/AbnormalSecurity/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "Abnormal Security",
"description": "Abnormal Security detects and protects against the whole spectrum of email attacks",
"support": "partner",
"currentVersion": "2.1.0",
"currentVersion": "2.1.1",
"author": "Abnormal Security",
"url": "",
"email": "support@abnormalsecurity.com",
Expand Down
Expand Up @@ -42,6 +42,7 @@ configuration:
description: Collects alerts & threat activities from Armis resources.
display: Armis Event Collector
name: ArmisEventCollector
supportlevelheader: xsoar
script:
commands:
- arguments:
Expand All @@ -63,7 +64,7 @@ script:
script: '-'
type: python
subtype: python3
dockerimage: demisto/python3:3.10.13.75921
dockerimage: demisto/python3:3.10.13.78960
marketplaces:
- marketplacev2
fromversion: 6.10.0
Expand Down
6 changes: 6 additions & 0 deletions Packs/Armis/ReleaseNotes/1_1_4.md
@@ -0,0 +1,6 @@

#### Integrations

##### Armis Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/Armis/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "Armis",
"description": "Agentless and passive security platform that sees, identifies, and classifies every device, tracks behavior, identifies threats, and takes action automatically to protect critical information and systems",
"support": "partner",
"currentVersion": "1.1.3",
"currentVersion": "1.1.4",
"author": "Armis Corporation",
"url": "https://support.armis.com/",
"email": "support@armis.com",
Expand Down
Expand Up @@ -56,6 +56,7 @@ configuration:
description: Use this integration to fetch model breaches from Darktrace as events in XSIAM.
display: Darktrace Event Collector
name: Darktrace Event Collector
supportlevelheader: xsoar
script:
commands:
- arguments:
Expand All @@ -81,7 +82,7 @@ script:
type: python
subtype: python3
isfetchevents: true
dockerimage: demisto/python3:3.10.12.68714
dockerimage: demisto/python3:3.10.13.78960
marketplaces:
- marketplacev2
fromversion: 6.9.0
Expand Down
6 changes: 6 additions & 0 deletions Packs/Darktrace/ReleaseNotes/3_0_5.md
@@ -0,0 +1,6 @@

#### Integrations

##### Darktrace Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/Darktrace/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "Darktrace",
"description": "Populates Darktrace Model Breaches and AI Analyst Events in Cortex XSOAR, allowing for cross-platform automated investigation and response.",
"support": "partner",
"currentVersion": "3.0.4",
"currentVersion": "3.0.5",
"fromVersion": "5.0.0",
"author": "Darktrace",
"githubUser": "",
Expand Down
Expand Up @@ -43,9 +43,10 @@ configuration:
required: false
type: 8
section: Connect
description: Digital Guardian ARC event collector
description: Digital Guardian ARC event collector.
display: Digital Guardian ARC Event Collector
name: DigitalGuardianARCEventCollector
supportlevelheader: xsoar
script:
commands:
- arguments:
Expand All @@ -69,7 +70,7 @@ script:
description: Gets events from Hello World.
execution: false
name: digital-guardian-get-events
dockerimage: demisto/python3:3.10.13.72123
dockerimage: demisto/python3:3.10.13.78960
isfetchevents: true
runonce: false
script: '-'
Expand Down
6 changes: 6 additions & 0 deletions Packs/DigitalGuardian/ReleaseNotes/1_1_3.md
@@ -0,0 +1,6 @@

#### Integrations

##### Digital Guardian ARC Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/DigitalGuardian/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "Digital Guardian",
"description": "Digital Guardian ARC Watchlist Integration",
"support": "partner",
"currentVersion": "1.1.2",
"currentVersion": "1.1.3",
"author": "Digital Guardian",
"url": "https://digitalguardian.com",
"email": "support@digitalguardian.com",
Expand Down
Expand Up @@ -52,6 +52,7 @@ configuration:
description: KnowBe4_KMSAT allows you to push and pull your external data to and from the KnowBe4 console.
display: 'KnowBe4 KMSAT Event Collector'
name: KnowBe4 KMSAT Event Collector
supportlevelheader: xsoar
script:
commands:
- description: Manual command to fetch and display events.
Expand Down Expand Up @@ -120,7 +121,7 @@ script:
script: '-'
type: python
subtype: python3
dockerimage: demisto/python3:3.10.13.77674
dockerimage: demisto/python3:3.10.13.78960
isfetchevents: true
fromversion: 6.8.0
tests:
Expand Down
6 changes: 6 additions & 0 deletions Packs/KnowBe4_KMSAT/ReleaseNotes/1_0_22.md
@@ -0,0 +1,6 @@

#### Integrations

##### KnowBe4 KMSAT Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/KnowBe4_KMSAT/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "KMSAT",
"description": "KnowBe4 KMSAT Integration",
"support": "partner",
"currentVersion": "1.0.21",
"currentVersion": "1.0.22",
"author": "KnowBe4",
"url": "https://www.knowbe4.com/products/kevin-mitnick-security-awareness-training",
"email": "support@knowbe4.com",
Expand Down
Expand Up @@ -58,8 +58,9 @@ script:
script: '-'
type: python
subtype: python3
dockerimage: demisto/python3:3.10.12.66339
dockerimage: demisto/python3:3.10.13.78960
fromversion: '6.8.0'
supportlevelheader: xsoar
marketplaces:
- marketplacev2
tests:
Expand Down
6 changes: 6 additions & 0 deletions Packs/Orca/ReleaseNotes/2_2_7.md
@@ -0,0 +1,6 @@

#### Integrations

##### Orca Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/Orca/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "Orca",
"description": "Integrate with Orca security for bidirectional incident management and fetching of asset information. \n",
"support": "partner",
"currentVersion": "2.2.6",
"currentVersion": "2.2.7",
"author": "Orca Security",
"url": "https://orca.security/",
"email": "support@orca.security",
Expand Down
Expand Up @@ -38,6 +38,7 @@ configuration:
description: This integration fetches alerts from Recorded Future.
display: Recorded Future Event Collector
name: RecordedFutureEventCollector
supportlevelheader: xsoar
script:
commands:
- arguments:
Expand All @@ -54,7 +55,7 @@ script:
name: limit
description: Gets events from Recorded Future.
name: recorded-future-get-events
dockerimage: demisto/python3:3.10.13.72123
dockerimage: demisto/python3:3.10.13.78960
isfetchevents: true
script: '-'
subtype: python3
Expand Down
6 changes: 6 additions & 0 deletions Packs/RecordedFuture/ReleaseNotes/1_7_3.md
@@ -0,0 +1,6 @@

#### Integrations

##### Recorded Future Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/RecordedFuture/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "Recorded Future Intelligence",
"description": "Recorded Future App, this pack is previously known as 'RecordedFuture v2'",
"support": "partner",
"currentVersion": "1.7.2",
"currentVersion": "1.7.3",
"author": "Recorded Future",
"url": "https://www.recordedfuture.com/support/demisto-integration/",
"email": "support@recordedfuture.com",
Expand Down
Expand Up @@ -51,6 +51,7 @@ configuration:
description: 'Retrieve access, authentication, and audit logs and store them on a Security Information and Event Management (SIEM) system, local repository, or syslog file server. You can retrieve the logs only for the tenant that is associated with the API key, or for a direct or delegated child of that tenant.'
display: 'Thales SafeNet Trusted Access Event Collector'
name: SafeNetTrustedAccessEventCollector
supportlevelheader: xsoar
script:
commands:
- arguments:
Expand All @@ -74,7 +75,7 @@ script:
type: python
subtype: python3
isfetchevents: true
dockerimage: demisto/python3:3.10.13.77674
dockerimage: demisto/python3:3.10.13.78960
marketplaces:
- marketplacev2
fromversion: 6.8.0
Expand Down
6 changes: 6 additions & 0 deletions Packs/SafeNet_Trusted_Access/ReleaseNotes/2_0_27.md
@@ -0,0 +1,6 @@

#### Integrations

##### Thales SafeNet Trusted Access Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/SafeNet_Trusted_Access/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "Thales SafeNet Trusted Access",
"description": "SafeNet Trusted Access by Thales is an access management solution that allows organizations to centrally manage and secure access to business applications.",
"support": "partner",
"currentVersion": "2.0.26",
"currentVersion": "2.0.27",
"author": "Thales",
"url": "https://supportportal.gemalto.com/csm/?id=portal_home_page",
"email": "",
Expand Down
Expand Up @@ -56,6 +56,7 @@ configuration:
description: This integration fetches activities, threats, and alerts from SentinelOne.
display: SentinelOne Event Collector
name: SentinelOneEventCollector
supportlevelheader: xsoar
script:
commands:
- arguments:
Expand All @@ -71,7 +72,7 @@ script:
name: limit
description: Gets events from SentinelOne.
name: sentinelone-get-events
dockerimage: demisto/python3:3.10.13.73190
dockerimage: demisto/python3:3.10.13.78960
isfetchevents: true
script: '-'
subtype: python3
Expand Down
6 changes: 6 additions & 0 deletions Packs/SentinelOne/ReleaseNotes/3_2_11.md
@@ -0,0 +1,6 @@

#### Integrations

##### SentinelOne Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/SentinelOne/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "SentinelOne",
"description": "Endpoint protection",
"support": "partner",
"currentVersion": "3.2.10",
"currentVersion": "3.2.11",
"author": "SentinelOne",
"url": "https://www.sentinelone.com/support/",
"email": "support@sentinelone.com",
Expand Down
Expand Up @@ -52,6 +52,7 @@ configuration:
description: Palo Alto Networks Trend Micro Vision One Event Collector integration for Cortex XSIAM collects the Workbench, Observed Attack Techniques, Search Detections and Audit logs.
display: 'Trend Micro Vision One Event Collector'
name: TrendMicroVisionOneEventCollector
supportlevelheader: xsoar
script:
commands:
- description: Returns a list of logs.
Expand Down Expand Up @@ -85,7 +86,7 @@ script:
script: '-'
type: python
subtype: python3
dockerimage: demisto/python3:3.10.12.66339
dockerimage: demisto/python3:3.10.13.78960
fromversion: 6.10.0
marketplaces:
- marketplacev2
Expand Down
6 changes: 6 additions & 0 deletions Packs/TrendMicroVisionOne/ReleaseNotes/3_0_3.md
@@ -0,0 +1,6 @@

#### Integrations

##### Trend Micro Vision One Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/TrendMicroVisionOne/pack_metadata.json
Expand Up @@ -2,7 +2,7 @@
"name": "Trend Micro Vision One",
"description": "Trend Micro Vision One is a purpose-built threat defense platform that provides added value and new benefits beyond XDR solutions, allowing you to see more and respond faster. Providing deep and broad extended detection and response(XDR) capabilities that collect and automatically correlate data across multiple security layers—email, endpoints, servers, cloud workloads, and networks—Trend Micro Vision One prevents the majority of attacks with automated protection.",
"support": "partner",
"currentVersion": "3.0.2",
"currentVersion": "3.0.3",
"serverMinVersion": "6.2.0",
"author": "Trend Micro",
"url": "https://success.trendmicro.com",
Expand Down
Expand Up @@ -40,6 +40,7 @@ configuration:
description: 'Collects Vectra Detections and Audits into XSIAM Events.'
display: 'Vectra AI Event Collector'
name: VectraAIEventCollector
supportlevelheader: xsoar
script:
commands:
- name: vectra-get-events
Expand All @@ -56,7 +57,7 @@ script:
script: '-'
type: python
subtype: python3
dockerimage: demisto/python3:3.10.13.75921
dockerimage: demisto/python3:3.10.13.78960
marketplaces:
- marketplacev2
fromversion: 6.10.0
Expand Down
6 changes: 6 additions & 0 deletions Packs/Vectra_AI/ReleaseNotes/1_2_10.md
@@ -0,0 +1,6 @@

#### Integrations

##### Vectra AI Event Collector
- Updated the Docker image to: *demisto/python3:3.10.13.78960*.
- Added a notice to the documentation that this integration is supported by Palo Alto Networks.
2 changes: 1 addition & 1 deletion Packs/Vectra_AI/pack_metadata.json
Expand Up @@ -4,7 +4,7 @@
"Network Security"
],
"created": "2022-06-27T10:00:00Z",
"currentVersion": "1.2.9",
"currentVersion": "1.2.10",
"description": "This content pack allows to create incidents based on Vectra Accounts/Hosts/Detections objects.",
"devEmail": [
"tme@vectra.ai"
Expand Down