From d0753b7f247bad9cfedd80eba7fad3b04da8b7dc Mon Sep 17 00:00:00 2001 From: PrasadBoke Date: Mon, 16 Oct 2023 17:14:57 +0530 Subject: [PATCH] create ui corrected --- .../Package/3.0.0.zip | Bin 17266 -> 17259 bytes .../Package/createUiDefinition.json | 4 ++-- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/Solutions/GreyNoiseThreatIntelligence/Package/3.0.0.zip b/Solutions/GreyNoiseThreatIntelligence/Package/3.0.0.zip index c94bf140b51ea7f28b165b486c35d31622e546fc..dc900d1de39bbf10606bc31bbe4a18d9653925ae 100644 GIT binary patch delta 2446 zcmV;9332xFh5_q_0T)n90|XQR000O8(uq)4Yw5HHl?eaEVvI>+KB^#g~Gwe})H&GsFLObjW8S7DmX}J4r($eu=z)Xc_;Z)3w&7?p_v6VL$W|2-)Q_U65Xb2&~#(LuZ9h~8y zhKH=kni}}J7 z&p%G$NxZ%NUK+l?y$x_0lZXK%e|^#g|M}Oy;iCn$_7W~Wa;KZ-(wE)bb?5foz8b}O z?(kWrOb_3o)9=aY@q!ll2mwQb<~;WKFq_EE<3&Nwn<&T(8!tH8AF&&B1um{*xr#w( zomLHE*GN-6)R_Uf1KLVE;T|Mh8HThZ2nZ#iAvdlMNfX4ViJeDqp+Rs_e>elq8>qTd z8n#*?N%F<^gdFxtbWt}H^oJZgNR(U(q#syHeKKUt(J8PXP+V&q*PJ5)G2F;h0gsnL z$(W)OrZ@0w%GFK2$fb>=(<86)=p#G0Z*(6pw8NXv-2Mt6WK#qW0%jPXfk&qr^`LLs zXR*~N&>|IcW2H4Ssls4Ie}nu~33G#%O8k6<>;UI5ob%G3m@|a{vk;7kIL_!33~U;5 z)NL^o6%1jfWCY|QDoB*zhN&CWVOCOIgPeiH!~n1QyE{8*K&++GpwiebFN%Z#1`!%C zre#iJfxr*}bb@}1CC8Ww6YbpB1~E-I`Huiw`0z1BuW9%-smSb)O8c7xZbYRm8hL11 zyBk`HBys=8MO>qUf4xq>lCE_+t>)`WCdZek0D0u|Q^!PGDK4rKP_08BkS5H|a#9q& zVKH-c*1JAr;Zdw9W$Pi4RVU2ndYI(14;j`zV}ZR#TTO*soO^_^stDgo&M@ukPF3)- ze7LPb7D}JB!iCk8Q3_apL4{ic0k;M5XAuy&b0vLPaX|8ee=sg^DO+G|a}kC_(ojHA zv+lO$RA(u)z=V(&={ro%7xbNyY0|KtQR#d8NoeE@^#DetRYm#F>_@J+Yy%2vRQrJ# zn+)NzW+<7L+kd~J9Vfr zb86E@l7*yZs`KvcxXw&$$;`sei1Q;oy4B#siA2!fszk%r2GCC|5reE5e6zQ+w=>xJ z^I&Ip3k_~t-NK}{Ra|}L0v^aH!XEYzE6^c!5;bXCe=JG7oec^0b9^Dg!1cLjc71@s z9aFEdAix;|>U35j3?Za-mvLC3M1>K0LrQ3)unjW0v8Fa~c<>7gamnohMl9(%LUvtv zbhqjOu+{UHB;JQit_N>^w4Do1p}R&Nqehjz!1_3Z#Ozmn*qU_ula95d{q5}*s=i#~DREmU9yD`A6|piURfRI5UFO*X zd)?&0^mfa32h?~r>dl?;F-GaX zVkx+8d?FK9H5;Xb)X^L{;qz3PH{04W+IFIaDP6W>zGoNV!QW*H)T>e@xc{knCju#QybR; z_K>6TK>6`Wte(lJ2oIAT_XV zM1)KC=)(cFa`w>i-ote0j*ohM+I(qbrN5xir441ojK6SkS>XBjim(x5HrS0lk}*!p zS$1J_Eay+ooW0)+b1MDASMqMQ8@dS+pZN z1Ir9^_q@3*SzKMz`kKBlzkhf!et($FgwIFW4eygP_lNJx+_j?mQt7b{>I-w{^>cBj zQCZK#JQgu#|EF)pUjJY6rUdlyoGBm5{ki*5T;O2ROw#(LSb0r2s9ctJE@nb$)BVP~ zG0e%`N8FF~`L8Jpb^bSnz2M5HUzIbjU8LE|u-u2*MOdfiS^m(iiIi8CB-1imegkVU z#eeYce*sWS0|XQR000O8mWH$42?se1(uq)4Yw5HHl?ea{TI0BZ2lPg0U0m_p| MLnH>#LI3~&0Lw?ZBLDyZ delta 2483 zcmV;k2~76uh5_=10UJn^!mUCB(D}3W7d&E}UFa-~N%Zb;=tjJV#ca+a9vhE+ zNfq~e8D;PEaLe2Fb_R*!OMk&v!#%~B;r|%#^O=Z+5i<4;)6j^YBkx~Y#((Pc?OY2M z2O(E9*P-y0)N*FLk=0$%kO?oj(x`}pYm;TK6Q)?i4GN*eR~o`WU&b>rF9&c)=o9gU zsQ?FOEY!STyqPjBd|egB!GLRDiNs_x|0tq4Xyv~-E6`DF<;{gzq*c>YbA>Y+LWr=j zp16Mp$2cfr9u5&KG;(+#=TZ;nieJT2XnqmmbHvo;#WZC8rKgwkvkt68U=}#lUtTAl z@o~Y$d|`^`w`cKLyt(;78os-^32+pXhyf&jUD5^r`SmyWWI?UHgws#l>882#c{g|6 zxqY**Msc1ye4HuM!}sX)2XcC{phX@dU}(^s$37os6WMvZDCnIj$n2UdIGP`^EA#|T zFJrliL1>*;?O~V5Qa#k!{JH(wN;}~mBwQJWtRw^oB%vX9?JcR_HWMQ~bw zI0McbsJc^Hwpt-c^2PRq9QI0dQ8^U!ha5aelw1m=A6QC#He}BD2v`s(t~HKp&Jltb zu4Jl!$4jAPOwkF`EBGbl>MCF4(#Fxz*sDDH$PVrs-3JWq@ahYkx~GAo&+);T$tjVBcWERCBiy%g*KBee24ZkK8nf*~|f0MwC zu(U-Zk4@H*XdW%wN9tid|k=p_!1Q$k9>aQm}o1-X;lKMb?76~ zgxOgRi^4Z7X0Fb9(}ye^$C^^M9uiq~!hEiWNk03KVeK;(*ju#KRM^G2MHs7!@U7$w z)4uLh1<%We>ndcS^jRxhSWOwFfb|ztxJ3|fTM+*)0wQ;=qz@|&NPZB1#sw~A3#@G} z!jMQB3MgvUUDurIEQJ=B5b`2@gX#H#zE?6$8ul|PeeXUCjhvw#z^JsUDF2!L$Q74u zKtYXaKM-S+L4Ko;2cwh1m8wKY1%!wc`IyP6$L`cmH zCG(OzE)8??i84Qd`zgbJ04xZY0x6^Opr#uuNFeeS=5%gbE7c8oJU5GO4a9EGBM*E1 zt=@U34mD;@ZQ4k(kkm|d-oKmFnTai#S=bqIexygY8k{(h2>Kh9Xt-|x{lpS6$eO`7 zJ6k(jgRQ>~wzfCW;I`E*Oln)j)jbz*Peu{;u=`kn_OX?yN!wz7N#gBnNU)#d3mFEk z&po#50}O7MdW{7E&KOXuvl3wlA+5WN!wMxTjL;9Hgf=Y6FJ{KeG^*+%90m zlCC3U*M&!SqaFYoJ#R_keaPf`@aC=UTyP5AHSz#8s_Y%Ee6J7rSS$Z}D9{y#M^+E^ z_L_Gy7HxbzbC{ohb#~7>8+{-#`&Az{&N}_Gj51u`(r9 zg)*X@=h*{$-Q>>XL0Q!=%5OWH)@pQ32=@p9p9o{Exm6OEp6XVk(yb@-cFVR0)Oa@P z&5iLfLFvC?DY$HWA`@3N8>NKQ(HuG9^HiC4+uAbPcA|wTUAAMsWf$SWKV=Hkt5PMp zMG*W{8!S>(pzIWRH{H^X7ZK;dXoe)dX_HI_D1W;8Sg)StS=Y{?37H&AT z)xa#+UmOo%pOs>o`eM@*9q`-$O>tI~Lj$XY@P8M;>`~nuH!ChgDaKmr`J{Q&v>s{n z=X!l;ZQ#86`0&b5Y>V3~!>IN3w^oMM$sSo5+AVx&WhgBBJyeGJxp{6HsFd0`9^rS6jfECjE@*zC`nXKHUf0P%oFAtqxp2|I^9Di~I`_yg8BzS7%UodSNdp zE`O?*OLxTgBjA6Y@-P`AZ4$Z(c!yxv!*5Z!h;y| zfZf<58RN7ZXBRdHa{lDZ+4WVdg} zT+=BmxL|?q=y-hCco7?A7-rm~98JVMS180tvtz71rI?mL;w;bq#_&nZ+^e zb+MSaF1Nhb1wpFZ^>&50a?gVwr|K>JM>o$xuQetq-3Xu30yM79Ms%h^Z+h;!Hh)bL zEQ>CqPE!$@0g@LD$_~Ra3*CipE=#6YSGT^nFU#{EUX14-XEWjRQFhb&vXkHtI|F;;=6Z^~Z(U-G5|^zoc2AIg2Y`%zrvV9rd^`sG-8 zT{x&*ns-iTLTS_e#yc`h$=yfXlRowNFDVOk{)N5h%BNqIGp}8!*-Nq9huVc$r{-Dy z(5;D-SC=HyGFyHVYca)t@b7;CP)h>@6aWAK2mlmk~>2I6~003Q+ x>Owdl6oOD!;s@4*g^mR007}CtKI+r diff --git a/Solutions/GreyNoiseThreatIntelligence/Package/createUiDefinition.json b/Solutions/GreyNoiseThreatIntelligence/Package/createUiDefinition.json index 57eef219717..e51e6320ea3 100644 --- a/Solutions/GreyNoiseThreatIntelligence/Package/createUiDefinition.json +++ b/Solutions/GreyNoiseThreatIntelligence/Package/createUiDefinition.json @@ -6,7 +6,7 @@ "config": { "isWizard": false, "basics": { - "description": "\n\n**Note:** Please refer to the following before installing the solution:\n\n • Review the solution [Release Notes](https://github.com/Azure/Azure-Sentinel/tree/master/Solutions/GreyNoiseThreatIntelligence/ReleaseNotes.md)\r \n • There may be [known issues](https://aka.ms/sentinelsolutionsknownissues) pertaining to this Solution, please refer to them before installing._\n\nThe [GreyNoise Threat Intelligence](https://www.greynoise.io/) solution for Microsoft Sentinel provides context to IP addresses seen in your environment by querying the GreyNoise API. GreyNoise collects, analyzes, and labels data on IPs that scan the internet and saturate security tools with noise. We provides near real time, actionable threat intelligence from our proprietary network of over 3,100 sensors running worldwide. This unique perspective helps analysts spend less time on irrelevant or harmless activity, and more time on targeted and emerging threats. \n [Learn More about GreyNoise Threat Intelligence](https://www.greynoise.io/) | [GreyNoise Docs](https://docs.greynoise.io)\n\n**Data Connectors:** 1, **Workbooks:** 1, **Analytic Rules:** 5\n\n[Learn more about Microsoft Sentinel](https://aka.ms/azuresentinel) | [Learn more about Solutions](https://aka.ms/azuresentinelsolutionsdoc)", + "description": "\n\n**Note:** Please refer to the following before installing the solution:\n\n • Review the solution [Release Notes](https://github.com/Azure/Azure-Sentinel/tree/master/Solutions/GreyNoiseThreatIntelligence/ReleaseNotes.md).\r \n • There may be [known issues](https://aka.ms/sentinelsolutionsknownissues) pertaining to this Solution, please refer to them before installing.\n\nThe [GreyNoise Threat Intelligence](https://www.greynoise.io/) solution for Microsoft Sentinel provides context to IP addresses seen in your environment by querying the GreyNoise API. GreyNoise collects, analyzes, and labels data on IPs that scan the internet and saturate security tools with noise. We provides near real time, actionable threat intelligence from our proprietary network of over 3,100 sensors running worldwide. This unique perspective helps analysts spend less time on irrelevant or harmless activity, and more time on targeted and emerging threats. \n [Learn More about GreyNoise Threat Intelligence](https://www.greynoise.io/) | [GreyNoise Docs](https://docs.greynoise.io)\n\n**Data Connectors:** 1, **Workbooks:** 1, **Analytic Rules:** 5\n\n[Learn more about Microsoft Sentinel](https://aka.ms/azuresentinel) | [Learn more about Solutions](https://aka.ms/azuresentinelsolutionsdoc)", "subscription": { "resourceProviders": [ "Microsoft.OperationsManagement/solutions", @@ -180,7 +180,7 @@ "name": "analytic3-text", "type": "Microsoft.Common.TextBlock", "options": { - "text": "This rule identifies a match Network Sessions for which the source or destination IP address is a known GreyNoise IoC.

\nThis analytic rule uses [ASIM](https://aka.ms/AboutASIM) and supports any built-in or custom source that supports the ASIM NetworkSession schema" + "text": "This rule identifies a match Network Sessions for which the source or destination IP address is a known GreyNoise IoC.\nThis analytic rule uses [ASIM](https://aka.ms/AboutASIM) and supports any built-in or custom source that supports the ASIM NetworkSession schema." } } ]