mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
updated dirs and README
This commit is contained in:
@@ -13,7 +13,14 @@ Can be consumed using:
|
||||
* CLI
|
||||
|
||||
# Structure
|
||||
`src/` - splunk content app source files, includes lookups, binaries, and defaul config files
|
||||
[stories/](stories/) - contains all analytics stories/use cases for ESCU
|
||||
[detections/](detections/) - splunk, uba and phantom detections that power stories
|
||||
[investigations/](investigations/) - splunk, and phantom investigation content that are used in stories
|
||||
[responses/](responses/) - automated splunk and phantom responses that are used in stories
|
||||
[baselines/](baselines/) - phantom and Splunk baseline needed to support detections in stories
|
||||
[src/](src/) - splunk content app source files, includes lookups, binaries, and defaul config files
|
||||
[bin/](bin/) - where all binaries to produce, and test content lives
|
||||
[spec/](spec/) - location of all spec files that describe ESCU content
|
||||
|
||||
# Developing
|
||||
|
||||
|
||||
@@ -1,2 +0,0 @@
|
||||
[confluence]
|
||||
url=https://confluence.splunk.com
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user