QRadar: Creating Searches, Rules and Offenses using Categories

แชร์
ฝัง
  • เผยแพร่เมื่อ 29 พ.ย. 2024

ความคิดเห็น • 9

  • @JB-rz1qe
    @JB-rz1qe 4 ปีที่แล้ว +5

    Just to let you know, you're the best Qradar teacher in TH-cam! :)

  • @studiodesign4661
    @studiodesign4661 ปีที่แล้ว

    Excellent, I am from Brazil!, Thanks

  • @danieleargento40
    @danieleargento40 5 ปีที่แล้ว +1

    Great video! As far as you know, is it possible to create an offense through script with APIs? Or generate a log event and configure a rule to generate an offense when that event is created?

    • @jbravovideos
      @jbravovideos  5 ปีที่แล้ว

      Look in the second screen of the rules wizard and you will find options to launch an event when a rule triggers, then that event can trigger another rule

    • @danieleargento40
      @danieleargento40 5 ปีที่แล้ว

      @@jbravovideos I have to launch an offense only if a condition checked in an action script is matched. But i think i will trigger an event through the script and then i will catch that event as an offense with a rule in QRadar.
      Thank you very much for your answer!

  • @jbravovideos
    @jbravovideos  6 ปีที่แล้ว +1

    Thanks!!!

  • @miguelsaiz8151
    @miguelsaiz8151 6 ปีที่แล้ว +1

    Excellent

  • @anirbandey9399
    @anirbandey9399 2 ปีที่แล้ว

    please can you share the course notes