-
Notifications
You must be signed in to change notification settings - Fork 1.5k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
PolySwarm Integration #5175
base: master
Are you sure you want to change the base?
PolySwarm Integration #5175
Conversation
@JavierBotella thank you for your contribution! The code looks good, but let me ping @wazuh/framework for them to check it as they are the Python experts. Hope to merge it soon. |
ack. thanks you @vikman90 ! |
Hey guys, checking on this, did you got any time for a look on it? thanks you! |
Hello @JavierBotella, Sorry but we have not got the chance yet. We have it in mind but as of right now we are fully engaged in Wazuh version 4.0.0 which is being released soon. Regards, David J. Iglesias |
Sounds good @davidjiglesias. Whatever needed for version 4.0.0 in our side please let me know. Thanks you. |
hello @davidjiglesias, any news about this? Thanks! |
Hello @JavierBotella, First of all sorry for the late response. We are aware of this integration but we have not yet been able to prioritize it over some other improvements and bugfixes we have been working on lately. I will keep you updated if anything changes. Regards |
182eaa0
to
b5470ad
Compare
Description
This PR allows Wazuh and PolySwarm to integrate each other for threat intel enrichment.
More information about PolySwarm: https://polyswarm.io/
Configuration options
Add integration settings to
/var/ossec/etc/ossec.conf
file insideblock
<ossec_config>..</ossec_config>
Logs/Alerts example
Tests
3.10.2
and3.11.1