Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Marketplace Contribution] PAN-OS by Palo Alto Networks - Content Pack Update #31239

Closed
Show file tree
Hide file tree
Changes from 250 commits
Commits
Show all changes
4976 commits
Select commit Hold shift + click to select a range
7018af9
added the ability to add resolution when closing issue (#30960)
JasBeilin Nov 19, 2023
d87d09b
Reco: get user context by email address (#30963)
content-bot Nov 19, 2023
3d44ffa
Get Host Forensics - Generic - Added investigation and forensics outp…
idovandijk Nov 19, 2023
ee5ce92
Oncall artifacts missing (#30966)
JasBeilin Nov 19, 2023
279684b
poetry files (#30970)
content-bot Nov 19, 2023
047f160
Beyond Trust new pack - CIAC-8670 (#30921)
sharonfi99 Nov 20, 2023
eff3cb4
Run Release Notes Review only on XSOAR-supported Packs (#30948)
kgal-pan Nov 20, 2023
57439a8
Free Enrichers - Small fixes to pack names that are missing (#30968)
Ni-Knight Nov 20, 2023
8bc35d3
Phishing_Input_groups (#30887)
AdiPeret Nov 20, 2023
83d0a6a
Anomaly add description (#30976)
daryakoval Nov 20, 2023
5945975
Fix sync validation for xsoar-saas bucket (#30989)
yaakovpraisler Nov 20, 2023
65e5014
[Mail Listener V2] Handle corrupt mail object in stream of fetched ma…
samuelFain Nov 20, 2023
e5183fc
Secneur x adding output for error msg (#30864)
karinafishman Nov 20, 2023
a0d900b
Fixes for the 'Domain Enrichment - Generic v2' playbook (#30935)
TalNos Nov 20, 2023
2c8d27f
xsiam-siem-windows-defender-modeling-ciac-8043 (#30973)
cweltPA Nov 21, 2023
8ee0fd8
Add svgs files to integrations (#30931)
merit-maita Nov 21, 2023
eeb3405
Wiz 1.2.14 (#30984)
content-bot Nov 21, 2023
58f4af4
Added filter to the parsing rule of manage engine (#30975)
yasta5 Nov 21, 2023
9426762
Fixes for 'Detonate URL - Generic v1.5' playbook (#30869)
TalNos Nov 21, 2023
f7873fd
Update content_roles.json (#30964)
JasBeilin Nov 21, 2023
0e463f3
[Prisma Cloud V2] Fix Namespace Extraction (#30996)
BEAdi Nov 21, 2023
c82f337
Cloud user investigation inputs description fix (#30965)
OmriItzhak Nov 21, 2023
905b34a
Detonate_URL_-_ThreatStream (#30992)
TalNos Nov 21, 2023
569536f
Added CIRCL CVE Search (#30997)
Ni-Knight Nov 21, 2023
1b7e537
Added cortex xdr to be mandatory dependency for Capture the flag 01 p…
ssokolovich Nov 21, 2023
cd7a15a
set to false field Threat Name (#30949) (#31006)
content-bot Nov 21, 2023
ac2719f
Workday fix successfully (#30932)
yasta5 Nov 21, 2023
94a6e00
User Investigation - Generic - added usage of XSIAM subplaybook to ge…
idovandijk Nov 21, 2023
f8e0194
remove legacy rn generator (#31009)
esharf Nov 21, 2023
24d375e
Release a new base pack (#31014)
lmichalevich Nov 21, 2023
d209487
Update Docker Image To demisto/crypto (#31030)
content-bot Nov 21, 2023
cb3a00b
Update Docker Image To demisto/py42 (#31036)
content-bot Nov 21, 2023
57bee09
Update Docker Image To demisto/py3ews (#31037)
content-bot Nov 21, 2023
1dc803a
Update Docker Image To demisto/btfl-soup (#31034)
content-bot Nov 21, 2023
48445b9
Demisto mock: get params, command and arguments from environment vari…
israelpoli Nov 21, 2023
7f8465a
Fixed an issue with where token handling in XSIAM wasn't passing agen…
kobymeir Nov 22, 2023
b4ec296
Update Docker Image To demisto/pymisp2 (#31054)
content-bot Nov 22, 2023
ddaac2a
Update Docker Image To demisto/py3-tools (#31052)
content-bot Nov 22, 2023
4954b34
Update Docker Image To demisto/crypto (#31053)
content-bot Nov 22, 2023
3e22990
Group-IB hot fix integration (#30470) (#30878) (#30900)
MosheEichler Nov 22, 2023
a514a0e
removed considuration of review requested (#30998)
omerKarkKatz Nov 22, 2023
4da8c73
args for ruff and sourcery (#31056)
RotemAmit Nov 22, 2023
8a60295
Fixes For 'Entity Enrichment - Generic v2' Playbook (#31011)
TalNos Nov 22, 2023
4308e1a
[IsIntegrationAvailable] Enhance to be more durable (#31016)
mmhw Nov 22, 2023
7c8942f
Fixes for 'Dedup - Generic v4' playbook (#29971)
TalNos Nov 22, 2023
663dec4
add pylint to precommit (#30510)
JudahSchwartz Nov 22, 2023
c287f40
Generic polling wildfire (#30929)
karinafishman Nov 22, 2023
cd3570e
Update Docker Image To demisto/python3 (#31024)
content-bot Nov 22, 2023
97d9eb6
Otrs mirroring (#31025)
content-bot Nov 22, 2023
e3d8d9a
Update Docker Image To demisto/bottle (#31039)
content-bot Nov 22, 2023
00d646b
Update Docker Image To demisto/pycountry (#31042)
content-bot Nov 22, 2023
6463e4b
Update Docker Image To demisto/boto3py3 (#31026)
content-bot Nov 22, 2023
6bff058
Update Docker Image To demisto/dxl (#31040)
content-bot Nov 22, 2023
a5ce4ed
Update Docker Image To demisto/py3-tools (#31027)
content-bot Nov 22, 2023
30c5582
Update Docker Image To demisto/greynoise (#31035)
content-bot Nov 22, 2023
51c960d
Update Docker Image To demisto/sixgill (#31031)
content-bot Nov 22, 2023
e46c3c8
Updated Security and Compliance permission docs (#31061)
MosheEichler Nov 22, 2023
d29e628
GIT_DEPTH: 1000 (#31018)
michal-dagan Nov 22, 2023
39e5fb9
removed old action scripts (#30378)
AradCarmi Nov 22, 2023
92b874e
Clear defender for cloud documentation (#31060)
omerKarkKatz Nov 22, 2023
f3482ea
[UploadFlow Ref] Refactor upload_packs main function (#30953)
yaakovpraisler Nov 22, 2023
59ec9e6
Update Docker Image To demisto/oci (#31029)
content-bot Nov 22, 2023
b3a2306
Get incident task by state add loop error (#31012)
ShahafBenYakir Nov 22, 2023
d2ede93
Update Docker Image To demisto/pandas (#31045)
content-bot Nov 22, 2023
aead772
Fixes for File Enrichment - Generic v2 (#31023)
TalNos Nov 22, 2023
c9f362d
Fix carriage return issue in get list row (#31020)
YuvHayun Nov 22, 2023
8a3b693
Update Docker Image To demisto/taxii2 (#31075)
content-bot Nov 23, 2023
888a496
Squash docker updates in content same version RNs (#30747)
DinaMeylakh Nov 23, 2023
396a549
SplunkPy: switch count to max_count (#31002)
JudahSchwartz Nov 23, 2023
a851f54
Demo event collector (#21981)
daryakoval Nov 23, 2023
e719da0
fixed layout name (#31069)
ShahafBenYakir Nov 23, 2023
cf81292
Freshworks freshservice include fix (#30977)
ShahafBenYakir Nov 23, 2023
68e52db
Fixing the instance role not being created causing the slack notifier…
kobymeir Nov 23, 2023
34d8879
Xsoar mirroring date bug (#31071)
jbabazadeh Nov 23, 2023
007a0ea
Release a new base pack (#31089)
lmichalevich Nov 23, 2023
5977596
[UploadFlow Ref] Fix upload with dependencies (#31079)
yaakovpraisler Nov 23, 2023
48c8f59
fix command azure-risky-users-list (#30986)
sapirshuker Nov 23, 2023
159567f
Fix armis get events command (#30877)
thefrieddan1 Nov 24, 2023
fe6243a
Updated FortiGate ParsingRules (#31103)
eepstain Nov 24, 2023
5c2fe93
[content-nightly] - refactor the checkout-upload-commit (#30760)
GuyAfik Nov 26, 2023
7a66a96
change the expected message (#31087)
jbabazadeh Nov 26, 2023
9ac979f
[Azure Sentinel] Fix first fetch (#31058)
ilaner Nov 26, 2023
2661671
Vectra XDR Release 100 (#30630) (#31104)
content-bot Nov 26, 2023
6672805
[IsIntegrationAvailable] Fix the Outputs (#31107)
mmhw Nov 26, 2023
db7b33d
add ci mode (#31108)
JudahSchwartz Nov 26, 2023
3edea59
External severity - change to be searchable (#31109)
ssokolovich Nov 26, 2023
e6dd668
YR-Fix-documentation/FeedRecordeduture/XSUP-29069 (#31015)
RosenbergYehuda Nov 26, 2023
851d386
Release a new base pack (#31094)
lmichalevich Nov 26, 2023
d0fcdcb
Fix dbot closed incidents percentage script (#31093)
MosheEichler Nov 26, 2023
fe64aaf
Xsup 30555 maprangevalues (#31095)
eyalpalo Nov 26, 2023
84a7e5e
update nvd fields (#31106)
content-bot Nov 26, 2023
fc520d4
decreased GIT_DEPTH (#31073)
michal-dagan Nov 26, 2023
f12bf2c
[GCP-IAM] - fix proxy issues (#31076)
GuyAfik Nov 26, 2023
301f0f5
Release notes tag parser for all xsoar mp. (#31090)
omerKarkKatz Nov 26, 2023
cce27d1
Fix EntryID-related issue for scripts (#30979)
MichaelYochpaz Nov 27, 2023
47c56c2
[CommonServerPython] Fix Polling Failure If `polling` Parameter is Mi…
MichaelYochpaz Nov 27, 2023
74d3aa7
jira ticket creation impovements (#31105)
kobymeir Nov 27, 2023
55d2d3e
Added Support for Microsoft Graph Single User integration (#30967)
sapirshuker Nov 27, 2023
c265972
Xdr ioc to keep troubleshoting (#30163)
omerKarkKatz Nov 27, 2023
39ad897
Update README.md (#31129)
tschanfeld Nov 27, 2023
0812702
[fileResult] - fix issue with special strings (#31126)
GuyAfik Nov 27, 2023
337dcd5
Rapid7 - Threat Command (IntSights) pack release 3.1.0 (#30954) (#31133)
content-bot Nov 27, 2023
b67bae8
add e2e tests for xsoar-saas (#30231)
GuyAfik Nov 27, 2023
199783c
Fix GetIndicatorDBotScoreFromCache to handle better a special charact…
RotemAmit Nov 27, 2023
b49a7dc
change pack support to community (#31110)
JudahSchwartz Nov 27, 2023
2e6d23d
removed GIT_DEPTH (#31141)
michal-dagan Nov 27, 2023
1578504
support multiple entry ids in ImageOCR (#31145)
dantavori Nov 27, 2023
4aff1a6
Fix taxi feed observables extraction (#31120)
YuvHayun Nov 28, 2023
f65c749
[transformers] Enhance to be more durable #2 (#31063)
mmhw Nov 28, 2023
dcff7ff
Sleep w/ Polling (#30661)
DeanArbel Nov 28, 2023
3bb9854
Update shift management scripts (#31130)
RotemAmit Nov 28, 2023
9cd4a74
EWS rule commands - MS graph python integrations (#30943)
esharf Nov 28, 2023
ca47b0d
MS IIS Update (#31132)
eepstain Nov 28, 2023
8c88411
Anomali ThreatStream change DBot verdict from Benign to Unknown for L…
content-bot Nov 28, 2023
b5422ef
generate empty junit files (#31153)
GuyAfik Nov 28, 2023
d3864bc
Update 1_6_0.json (#31164)
esharf Nov 28, 2023
c3e8275
fix splunkpy splunk_submit_event_hec_command string issue (#30978)
YuvHayun Nov 28, 2023
1ddf72d
[xsoar saas] - fix ports taxii2 e2e (#31163)
GuyAfik Nov 28, 2023
d3679f5
Hello world saas (#30901)
omerKarkKatz Nov 28, 2023
a06c1f9
MS IIS README (#31158)
eepstain Nov 28, 2023
c8e5796
Fixes For IP Enrichment Playbooks (#31114)
TalNos Nov 28, 2023
f8af96c
skip ThreatStream-Test (#31172)
adi88d Nov 29, 2023
44588a4
[transformers] Enhance to be more durable (#30897)
mmhw Nov 29, 2023
2867758
Fixes For 'Email Address Enrichment - Generic v2.1' (#31122)
TalNos Nov 29, 2023
dfd3b50
DisplayMappedFields - Fix dark mode text color (#31085)
melamedbn Nov 29, 2023
4bfb0e4
Updated the layout to exclude integration incident fields that are no…
content-bot Nov 29, 2023
89ddd73
Taxii2 server relationship bug (#31162)
GuyAfik Nov 29, 2023
e2ebaf1
[ASM] EXPANDER-7096 - ASM Remediation Guidance Fields (#30955) (#31178)
content-bot Nov 29, 2023
16352c3
Created pack for F5 BIG-IP APM (#31017)
yasta5 Nov 29, 2023
4652d23
HelloWorld - delete old classifier (#31185)
MLainer1 Nov 29, 2023
be82ae9
Add support for is array for rep commands (#31169)
YuvHayun Nov 29, 2023
7606ca2
added logs and cache fix (#30577)
ShahafBenYakir Nov 29, 2023
25e8856
Add support for is array for rep commands js (#31184)
YuvHayun Nov 29, 2023
9e91dc7
xsiam-avaya-siem-content-ciac-8502 (#31128)
cweltPA Nov 29, 2023
3a35b60
Fixed For Endpoint Enrichment Playbooks (#31147)
TalNos Nov 29, 2023
04b5025
Update Docker Image To demisto/python3 (#31198)
content-bot Nov 29, 2023
fcfb3f0
Update Docker Image To demisto/boto3py3 (#31199)
content-bot Nov 29, 2023
44cee2b
Update Docker Image To demisto/armorblox (#31203)
content-bot Nov 29, 2023
43b8f51
Update Docker Image To demisto/py3-tools (#31201)
content-bot Nov 29, 2023
7192739
Update Docker Image To demisto/oci (#31202)
content-bot Nov 29, 2023
bab9c1a
Update Docker Image To demisto/accessdata (#31200)
content-bot Nov 29, 2023
72f7707
Update Docker Image To demisto/carbon-black-cloud (#31206)
content-bot Nov 29, 2023
748065c
Update Docker Image To demisto/taxii2 (#31205)
content-bot Nov 29, 2023
4d63c99
Update Docker Image To demisto/crypto (#31204)
content-bot Nov 29, 2023
b977249
Update Docker Image To demisto/opnsense (#31208)
content-bot Nov 29, 2023
d07493e
Update Docker Image To demisto/auth-utils (#31207)
content-bot Nov 29, 2023
a523dba
Update Docker Image To demisto/ippysocks-py3 (#31211)
content-bot Nov 29, 2023
e20c26f
Update Docker Image To demisto/python3 (#31214)
content-bot Nov 30, 2023
6d628a0
Update Docker Image To demisto/boto3py3 (#31215)
content-bot Nov 30, 2023
8e4c7ee
Update Docker Image To demisto/accessdata (#31216)
content-bot Nov 30, 2023
923de52
Update Docker Image To demisto/oci (#31218)
content-bot Nov 30, 2023
394783a
Update Docker Image To demisto/py3-tools (#31217)
content-bot Nov 30, 2023
bde79c9
CortexXDRIR-generic-polling (#31082)
karinafishman Nov 30, 2023
e53a555
Update Docker Image To demisto/crypto (#31219)
content-bot Nov 30, 2023
0c9b46a
update pack ignore (#31193)
YuvHayun Nov 30, 2023
8d25e2b
Slack event collector: fixed an issue where we get a Bad Request erro…
moishce Nov 30, 2023
38f8f9b
YR/Remove-fields-with-one-letter-DBotFindSimilarIncidents/XSUP-29299 …
RosenbergYehuda Nov 30, 2023
2b0b4ae
Fixes For 'URL Enrichment - Generic v2' Playbook (#31195)
TalNos Nov 30, 2023
e3ffc31
F5 APM Remove XSIAM tags (#31221)
MosheEichler Nov 30, 2023
a73c645
remove ls from test_e2e_results.sh (#31186)
GuyAfik Nov 30, 2023
8c842c8
[IsEmailAddressInternal] Fix an issue with **domain** argument (#31222)
mmhw Nov 30, 2023
7dd8414
Deprecate 'Get endpoint details - Generic' Playbook (#31196)
TalNos Nov 30, 2023
b6586ed
Replacing the deprecated sub-playbook within the 'NGFW Internal Scan'…
TalNos Nov 30, 2023
8f9049a
[Marketplace Contribution] CISO Metrics (#30641) (#31213)
content-bot Nov 30, 2023
1b5c59b
Cybereason xsoar v 2.1.14 (#30647) (#31225)
content-bot Nov 30, 2023
c75b3ae
fixed polling support (#30873)
JasBeilin Nov 30, 2023
9c022d9
XSUP-30786/Fix (#31168)
AradCarmi Nov 30, 2023
9506ddb
rewrite to js FirstArrayElement and LastArrayElement (#31228)
dantavori Nov 30, 2023
d89f729
Enable Core REST API with general XSIAM endpoints (#31226)
DinaMeylakh Nov 30, 2023
7fcfce7
F5 APM fixed the marketplace build failure (#31236)
MosheEichler Dec 1, 2023
8816db0
"contribution update to pack "PAN-OS by Palo Alto Networks""
xsoar-bot Dec 1, 2023
0e3650c
Add incidents field (#30393) (#31233)
content-bot Dec 3, 2023
936220c
Update Docker Image To demisto/python3 (#31242)
content-bot Dec 3, 2023
e750fd7
Fixes For 'IP Enrichment - Generic v2' Playbook (#31183)
TalNos Dec 3, 2023
c185530
Check if should run Instance role (#31245)
jbabazadeh Dec 3, 2023
fd3e92b
Added the sync from the saas bucket and modified the verify script to…
omerKarkKatz Dec 3, 2023
5a850dd
AWS Organizations (#30525)
jlevypaloalto Dec 3, 2023
b8a61b2
NextToken in CommandResults (#30501)
jlevypaloalto Dec 3, 2023
e080c43
demisto-sdk-release 1.24.0 (#31268)
content-bot Dec 3, 2023
2eaf5e9
modified modeling rules of clearswift dlp (#31247)
yasta5 Dec 3, 2023
38a7e79
QRadar: continue to poll in case of networking issues (#31084)
ilaner Dec 4, 2023
961f3c8
Generalize the mode option in pre-commit (#30663)
RotemAmit Dec 4, 2023
2fd7da6
EXPANDR-1576 CortexXpanse Remediation Guidance changes (#31190)
content-bot Dec 4, 2023
b9bf7b8
Feature/cyberint enhancement (#31252)
content-bot Dec 4, 2023
c2bcf17
[xsoar-8 coverage] - use poll functions from SDK clients (#31144)
GuyAfik Dec 4, 2023
0291be6
[CrowdStrike Falcon Intel v2] Fixed an issue in 'cs-actors' and 'cs-r…
mmhw Dec 4, 2023
83cffa0
oncall- installation orders (#31253)
jbabazadeh Dec 4, 2023
22fe59c
Core rest api docs fix (#31262)
ShahafBenYakir Dec 4, 2023
4de28fc
bugfix/XSUP-30713/port-scan-pb-issue-incident-failure (#31154)
efelmandar Dec 4, 2023
c3ddcf1
[PagerDuty v2] Added Support For Pagination (#30959)
shmuel44 Dec 4, 2023
c4b97ef
[ASM] EXPANDR 7225 - Update Ev1 Integration Display Name (#31234) (#3…
content-bot Dec 4, 2023
e9600b9
Update Docker Image To demisto/python3 (#31286)
content-bot Dec 4, 2023
e249864
Add XSOAR_SAAS section to EDL description (#31264)
adi88d Dec 4, 2023
e3b7bf8
[XSUP 30575] Added full fields query param (#31272)
yaakovpraisler Dec 4, 2023
f1723ba
Update Docker Image To demisto/boto3py3 (#31287)
content-bot Dec 4, 2023
fc46c97
Update Docker Image To demisto/accessdata (#31288)
content-bot Dec 4, 2023
fbfd7d3
Update Docker Image To demisto/oci (#31290)
content-bot Dec 4, 2023
db6cde4
Update Docker Image To demisto/py3-tools (#31289)
content-bot Dec 4, 2023
37b0e2a
Update Docker Image To demisto/armorblox (#31291)
content-bot Dec 4, 2023
388c35d
Update Docker Image To demisto/crypto (#31292)
content-bot Dec 4, 2023
3fdfaab
Update Docker Image To demisto/sixgill (#31293)
content-bot Dec 4, 2023
567874d
Update Docker Image To demisto/carbon-black-cloud (#31295)
content-bot Dec 4, 2023
29343ce
Update Docker Image To demisto/taxii2 (#31294)
content-bot Dec 4, 2023
fa17859
MS IIS Update2 (#31256)
eepstain Dec 4, 2023
97c4e70
CrowdStrikeFalconX-genreic-polling (#31189)
karinafishman Dec 4, 2023
6492e09
Add Symantec MSS to ignored items (#31296)
samuelFain Dec 5, 2023
231740d
[XSUP 30870] Added full fields option for cs-actors and cs-reports co…
yaakovpraisler Dec 5, 2023
0e77427
add myself as codeowner (#31314)
dantavori Dec 5, 2023
86ccdd9
ORKL Feed Integration 1.0.0 Initial Release (#31166)
content-bot Dec 5, 2023
5445373
[VirusTotal] Add suspicious threshold (#31220)
content-bot Dec 5, 2023
c756731
fixing CimTrak_test.py unit tests (#31308)
kobymeir Dec 5, 2023
7d7fb42
Add new command and bug fix. (#31311)
content-bot Dec 5, 2023
be520c2
Anomali ThreatStream v3 - Fix threatstream-get-indicators command (#3…
adi88d Dec 5, 2023
cd82fb3
SentinelOne v2: Add 2 new commands (#31312)
content-bot Dec 5, 2023
dfd2279
fixing jira file attachments (#31297)
kobymeir Dec 5, 2023
c49e4b6
CiscoSMA Update (#31315)
eepstain Dec 5, 2023
093b528
updated docs (#31192)
maimorag Dec 5, 2023
6aa2934
Fix an issue when there is only one incident in fetch_incidents power…
RotemAmit Dec 5, 2023
cea4ae5
Get Entity Alerts by MITRE Tactics - Performance Improvements (Refact…
idovandijk Dec 5, 2023
375be91
fix for sdk nightly e2e tests (#31310)
MLainer1 Dec 5, 2023
9eedd5f
[qradar-v3] - handle connection errors (#31246)
GuyAfik Dec 5, 2023
22e8137
oncall-sdk-nightly-create-xsoar-instance (#31300)
jbabazadeh Dec 5, 2023
195060a
[ASM] - EXPANDER 7238 - Jira Playbook Support for V2 and V3 Project K…
content-bot Dec 5, 2023
3bba582
Support contributions when the name of the repo isn't content (#31320)
adi88d Dec 5, 2023
671cc86
Oncall sdk nightly create xsoar instance (#31324)
jbabazadeh Dec 6, 2023
f8cba78
CIAC-4556/xdr-remote-psexec-lolbin-command-execution-playbook (#29092)
efelmandar Dec 6, 2023
77b26c7
Update README.md (#31299)
ShahafBenYakir Dec 6, 2023
561ac90
Last Mirrored New Field & Qradar fix (#31251)
ArikDay Dec 6, 2023
09a5d7e
Update native candidate to py3-native:8.4.0.82817 (#31319)
samuelFain Dec 6, 2023
cafde7f
SplunkPy missing incidents (#30783)
anas-yousef Dec 6, 2023
5138c0c
MATI - Supporting multiple inputs for generic enrichment commands (#3…
content-bot Dec 6, 2023
a23ee2a
Merge branch 'master' into pr/xsoar-bot/31239
MLainer1 Dec 6, 2023
2b1879a
[Cortex Data Lake] Update the Docker Image (#31337)
mmhw Dec 6, 2023
d66c305
Support Threat Assessment functionality in MS Graph Security (#30110)
merit-maita Dec 6, 2023
f891d33
incident field helloworld onprem (#31340)
omerKarkKatz Dec 6, 2023
f8eb223
update ParseEmailFilesV2 to 0.1.19 (#31331)
moishce Dec 6, 2023
797b96d
update readme (#31343)
yaakovpraisler Dec 7, 2023
6d590bd
[CommonServer.js] Update emailRegex (#31148)
mmhw Dec 7, 2023
0e1fb5b
Ciac 3790/add auto determine LDAP vendor (#31124)
yucohen Dec 7, 2023
3d1c909
[Versa Director] Update response data formats (#31327)
samuelFain Dec 7, 2023
04cc58d
Replace LastMirroredInTime incident field with Last Mirrored Time Sta…
RotemAmit Dec 7, 2023
aec5143
Tessian integration setup (#31350)
content-bot Dec 7, 2023
5319498
Kiteworks Modeling CIAC-6377 (#31230)
cweltPA Dec 7, 2023
180c049
Prisma SASE - Quarantine Host With Active Threat (#31346)
melamedbn Dec 7, 2023
dd09698
Symantec web security service pack long running (#30990)
israelpoli Dec 7, 2023
29a6fb5
FireEye ETP Event Collector fixes (#30819)
JasBeilin Dec 10, 2023
389b303
Merge branch 'master' into pr/xsoar-bot/31239
MLainer1 Dec 10, 2023
a906af0
rebase with current pack version
MLainer1 Dec 10, 2023
4e20021
Update Packs/PAN-OS/Integrations/Panorama/Panorama.py
amkoppad Dec 12, 2023
9199fc1
Update Packs/PAN-OS/Integrations/Panorama/Panorama.py
amkoppad Dec 12, 2023
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
The diff you're trying to view is too large. We only load the first 3000 changed files.
224 changes: 111 additions & 113 deletions .circleci/config.yml

Large diffs are not rendered by default.

1 change: 1 addition & 0 deletions .circleci/gitlab-ci-env-variables.sh
Expand Up @@ -2,6 +2,7 @@ echo 'export CI_BUILD_ID="$CIRCLE_BUILD_NUM"' >> $BASH_ENV
echo 'export CI_PIPELINE_ID="$CIRCLE_WORKFLOW_ID"' >> $BASH_ENV
echo 'export CI_COMMIT_BRANCH="$CIRCLE_BRANCH"' >> $BASH_ENV
echo 'export ARTIFACTS_FOLDER=/home/circleci/project/artifacts' >> $BASH_ENV
echo 'export PIPELINE_JOBS_FOLDER=/home/circleci/project/pipeline_jobs_folder' >> $BASH_ENV
echo 'export CI_COMMIT_SHA="$CIRCLE_SHA1"' >> $BASH_ENV
echo 'export CI_JOB_URL="$CIRCLE_BUILD_URL"' >> $BASH_ENV
echo 'export CI_JOB_NAME="$CIRCLE_JOB"' >> $BASH_ENV
Expand Down
41 changes: 21 additions & 20 deletions .devcontainer/Dockerfile
@@ -1,34 +1,35 @@
FROM python:3.10-slim-bullseye

ADD createCerts.sh .
RUN apt-get update && apt-get install dos2unix -y \
&& dos2unix /createCerts.sh \
&& chmod +x /createCerts.sh \
&& /createCerts.sh /usr/local/share/ca-certificates/certs.crt \
&& update-ca-certificates \
&& apt-get install python2 -y

ENV USERNAME demisto
ENV HOME /home/$USERNAME
ENV NODE_EXTRA_CA_CERTS /usr/local/share/ca-certificates/certs.crt
ENV PATH $PATH:$HOME/.local/bin:/root/.local/bin:/usr/local/share/nvm/current/bin

# This is a workaround for VSCode devcontainer features in self signed certificate

ADD https://raw.githubusercontent.com/devcontainers/features/main/src/common-utils/install.sh /install-common.sh
ADD https://raw.githubusercontent.com/devcontainers/features/main/src/git/install.sh /install-git.sh
ADD https://raw.githubusercontent.com/devcontainers/features/main/src/docker-in-docker/install.sh /install-dind.sh
ADD https://raw.githubusercontent.com/devcontainers/features/main/src/node/install.sh /install-node.sh
ADD createCerts.sh .
RUN apt-get update && apt-get install dos2unix git python2 curl -y \
&& dos2unix /createCerts.sh \
&& chmod +x /createCerts.sh \
&& /createCerts.sh $NODE_EXTRA_CA_CERTS \
&& update-ca-certificates \
&& rm -rf /features \
&& git clone https://github.com/devcontainers/features.git /features \
&& cd /features \
# locking to the latest master commit in this repo (https://github.com/devcontainers/features.git) to prevent breaking changes
# We should update this commit hash from time to time to
&& git checkout 96bff0097028001e6e4126c5528d37cb8c13e785

RUN UID="1000" GID="1000" bash install-common.sh
RUN VERSION="os-provided" bash install-git.sh
RUN VERSION="latest" bash install-dind.sh
RUN VERSION="lts" bash install-node.sh
# This is a workaround for VSCode devcontainer features in self signed certificate
RUN UID="1000" GID="1000" bash /features/src/common-utils/install.sh
RUN VERSION="os-provided" bash /features/src/git/install.sh
RUN VERSION="latest" bash /features/src/docker-in-docker/install.sh
RUN VERSION="lts" bash /features/src/node/install.sh
RUN bash /features/src/sshd/install.sh
RUN bash /features/src/github-cli/install.sh

# install poetry, configure certificate for git and tools for oh my zsh
RUN curl -sSL https://install.python-poetry.org | python3 - \
&& python -m pip install --user pipx \
RUN python -m pip install --user pipx \
&& python -m pipx ensurepath \
&& pipx install poetry \
&& git clone https://github.com/zsh-users/zsh-syntax-highlighting.git $HOME/.zsh/zsh-syntax-highlighting \
&& echo "source ~/.zsh/zsh-syntax-highlighting/zsh-syntax-highlighting.zsh" >> $HOME/.zshrc \
&& git clone https://github.com/zsh-users/zsh-autosuggestions $HOME/.zsh/zsh-autosuggestions \
Expand Down
10 changes: 10 additions & 0 deletions .devcontainer/createCerts.sh
Expand Up @@ -5,6 +5,13 @@
# It tries to connect to a server (for instance, github), show the local certificates and save it to a file.

# We connect to a random server and not paloaltonetworks.com to get external certificates.
# if command fails

if curl -I https://github.com > /dev/null; then
echo "No need to update certificate"
exit
fi

CONNECT_SERVER="github.com:443"

FILE=$1
Expand All @@ -21,3 +28,6 @@ if [ ! -f "$FILE" ]; then
exit
fi

git config --system http.sslCAInfo $FILE


18 changes: 10 additions & 8 deletions .devcontainer/createCommand.sh
Expand Up @@ -4,24 +4,26 @@ set -e

echo "Fixing permissions"

sudo chown demisto .venv
sudo chown demisto node_modules
sudo chown -R demisto $HOME
sudo chown -R demisto /workspaces

echo "Setting up git certificate"
sudo chown demisto /workspaces /workspaces/content
sudo chown -R demisto /workspaces/content/.vscode /workspaces/content/.git /workspaces/content/.venv /workspaces/content/node_modules /workspaces/content/package-lock.json

sudo git config --system http.sslCAInfo /usr/local/share/ca-certificates/certs.crt
sudo chown -R demisto $HOME

echo "Setting up VSCode paths"

cp .devcontainer/settings.json .vscode/settings.json
touch CommonServerUserPython.py
touch DemistoClassApiModule.py
path=$(printf '%s:' Packs/ApiModules/Scripts/*)
rm -f .env
echo "PYTHONPATH=""$path"":$PYTHONPATH" >> .env
echo "MYPYPATH=""$path"":$MYPYPATH" >> .env

echo "Setting up git safe directory"
git config --global --add safe.directory /workspaces/content

echo "Setting up content dependencies"
.hooks/bootstrap

NO_HOOKS=1 .hooks/bootstrap
echo "Run demisto-sdk pre-commit to cache dependencies"
poetry run demisto-sdk pre-commit >/dev/null 2>&1 || true
141 changes: 76 additions & 65 deletions .devcontainer/devcontainer.json
@@ -1,3 +1,4 @@
// Development container for Content.
{
"name": "XSOAR Content",
"build": {
Expand All @@ -14,52 +15,11 @@
"source=node-modules,target=${containerWorkspaceFolder}/node_modules,type=volume",
"source=dind-var-lib-docker,target=/var/lib/docker,type=volume"
],
"containerUser": "demisto",
"remoteUser": "demisto",
"settings": {
"terminal.integrated.defaultProfile.linux": "zsh",
"terminal.integrated.profiles.linux": {
"zsh": {
"path": "/bin/zsh"
}
},
"cSpell.words": [
"demisto",
"xsoar",
"xsiam",
"fromversion",
"toversion",
"marketplacev",
"ciac",
"whois",
]
},
"extensions": [
"cortexxsoarext.xsoar",
"ms-python.python",
"ms-vscode.PowerShell",
"ms-toolsai.jupyter",
"timonwong.shellcheck",
"GitHub.vscode-pull-request-github",
"eamodio.gitlens",
"ms-azuretools.vscode-docker",
"ms-vscode-remote.remote-containers",
"streetsidesoftware.code-spell-checker",
"njpwerner.autodocstring",
"VisualStudioExptTeam.vscodeintellicode",
"yzhang.markdown-all-in-one",
"shd101wyy.markdown-preview-enhanced",
"Gruntfuggly.todo-tree",
"redhat.vscode-yaml",
"PKief.material-icon-theme",
"mikestead.dotenv",
"KevinRose.vsc-python-indent",
"rangav.vscode-thunder-client",
"ms-python.black-formatter",
"LittleFoxTeam.vscode-python-test-adapter"
],
"remoteEnv": {
"LOCAL_WORKSPACE_PATH": "${localWorkspaceFolder}",
"PATH": "${containerWorkspaceFolder}/.venv/bin:${containerEnv:PATH}",
"PATH": "${containerEnv:PATH}:${containerWorkspaceFolder}/.venv/bin",
"CONTENT": "${containerWorkspaceFolder}",
"DEMISTO_SDK_CONTENT_PATH": "${containerWorkspaceFolder}",
"PYTHONPATH": "${containerWorkspaceFolder}:${containerWorkspaceFolder}/Packs/Base/Scripts/CommonServerPython/:${containerWorkspaceFolder}/Packs/Base/Scripts/CommonServerUserPython/:${containerWorkspaceFolder}/Tests/demistomock/:${containerEnv:PYTHONPATH}",
Expand All @@ -70,26 +30,77 @@
"DEMISTO_VERIFY_SSL": "${localEnv:DEMISTO_VERIFY_SSL}",
"DEMISTO_API_KEY": "${localEnv:DEMISTO_API_KEY}"
},
// this is commented out until VSCode will fix self signed certificate issues
// "features": {
// "ghcr.io/devcontainers/features/docker-in-docker:1": {
// "version": "latest"
// },
// "ghcr.io/devcontainers/features/git:1": {
// "version": "os-provided"
// },
// "ghcr.io/devcontainers/features/powershell:1": {
// "version": "latest"
// },
// "ghcr.io/devcontainers/features/common-utils:1": {
// "version": "latest"
// },
// "ghcr.io/devcontainers/features/node:1": {
// "version": "latest"
// }
// },
// "overrideFeatureInstallOrder": [
// "ghcr.io/devcontainers/features/common-utils:1"
// ],
"onCreateCommand": "dos2unix .devcontainer/createCommand.sh && chmod +x .devcontainer/createCommand.sh && bash .devcontainer/createCommand.sh",
"customizations": {
"vscode": {
"settings": {
"terminal.integrated.defaultProfile.linux": "zsh",
"terminal.integrated.profiles.linux": {
"zsh": {
"path": "/bin/zsh"
}
},
"cSpell.words": [
"demisto",
"xsoar",
"xsiam",
"fromversion",
"toversion",
"marketplacev",
"ciac",
"whois",
]
},
"extensions": [
"cortexxsoarext.xsoar",
"GitLab.gitlab-workflow",
"ms-python.python",
"GitHub.vscode-pull-request-github",
"eamodio.gitlens",
"ms-azuretools.vscode-docker",
"ms-vscode-remote.remote-containers",
"streetsidesoftware.code-spell-checker",
"njpwerner.autodocstring",
"VisualStudioExptTeam.vscodeintellicode",
"redhat.vscode-yaml",
"PKief.material-icon-theme",
"mikestead.dotenv",
"KevinRose.vsc-python-indent",
"LittleFoxTeam.vscode-python-test-adapter",
"charliermarsh.ruff",
"ryanluker.vscode-coverage-gutters",
"ms-python.debugpy",
"EditorConfig.EditorConfig",
"DavidAnson.vscode-markdownlint",
"ms-vscode.powershell"
]
}
},
// this is commented out until VSCode will fix self signed certificate issues
// "features": {
// "ghcr.io/devcontainers/features/docker-in-docker:1": {
// "version": "latest"
// },
// "ghcr.io/devcontainers/features/git:1": {
// "version": "os-provided"
// },
// "ghcr.io/devcontainers/features/powershell:1": {
// "version": "latest"
// },
// "ghcr.io/devcontainers/features/common-utils:1": {
// "version": "latest"
// },
// "ghcr.io/devcontainers/features/node:1": {
// "version": "latest"
// }
// },
// "overrideFeatureInstallOrder": [
// "ghcr.io/devcontainers/features/common-utils:1"
// ],
"onCreateCommand": "sudo dos2unix -n .devcontainer/createCommand.sh .devcontainer/createCommand_unix.sh && bash .devcontainer/createCommand_unix.sh",
"postStartCommand": "poetry install && poetry run demisto-sdk pre-commit >/dev/null 2>&1 || true",
"hostRequirements": {
"cpus": 4,
"memory": "8gb",
"storage": "32gb"
}
}
2 changes: 1 addition & 1 deletion .devcontainer/settings.json
@@ -1,8 +1,8 @@
{
"python.defaultInterpreterPath": "${workspaceFolder}/.venv/bin/python",
"python.linting.enabled": true,
"python.linting.flake8Enabled": true,
"python.linting.mypyEnabled": true,
"python.linting.flake8Enabled": false,
"python.linting.mypyArgs": [
"--follow-imports=silent",
"--ignore-missing-imports",
Expand Down
23 changes: 23 additions & 0 deletions .editorconfig
@@ -0,0 +1,23 @@
root = true

[*]
charset = utf-8
end_of_line = lf
indent_size = 4
indent_style = space
insert_final_newline = false
tab_width = 4

[{*.bash,*.sh,*.zsh}]
indent_size = 2
tab_width = 2

[{*.py,*.pyw}]
max_line_length = 130

[{*.yaml,*.yml}]
indent_size = 2
max_line_length = off

[{*.md,*.markdown}]
max_line_length = off