This website requires JavaScript.
Explore
Help
Sign In
admin
/
splunk-security_content
Watch
1
Star
0
Fork
0
You've already forked splunk-security_content
mirror of
https://github.com/splunk/security_content
synced
2026-06-08 17:32:49 +00:00
Code
Issues
Packages
Projects
Releases
Wiki
Activity
Files
10d43aa599460a4ff07ca040c5d754475f1ea1c8
splunk-security_content
/
automated_detection_testing
/
ci
/
detection_testing_batch
T
History
pyth0n1c
10d43aa599
Added functionality and checks to remove the security_content directory or persist the security_content directory. This is useful because, on slow connections, it makes running subsequent tests A LOT faster. It is also faster on a fast connection. Finally, and most importantly, it lets you easily persist and re-test changes that you've made to detections.
2021-10-20 18:17:07 -07:00
..
ansible
Changed a port back to the original since it's run inside the docker container as part of a playbook
2021-09-17 18:12:02 -07:00
modules
Added functionality and checks to remove the security_content directory or persist the security_content directory. This is useful because, on slow connections, it makes running subsequent tests A LOT faster. It is also faster on a fast connection. Finally, and most importantly, it lets you easily persist and re-test changes that you've made to detections.
2021-10-20 18:17:07 -07:00
datamodels.conf.tar
Lots of testing changes.... lots of progress. Need to clean up and test entire set of detections properly with sleeps and diagnose how long sleep should be or if there is a way to block while input data is processed entirely.
2021-10-11 17:05:28 -07:00
detection_testing_execution.py
Added functionality and checks to remove the security_content directory or persist the security_content directory. This is useful because, on slow connections, it makes running subsequent tests A LOT faster. It is also faster on a fast connection. Finally, and most importantly, it lets you easily persist and re-test changes that you've made to detections.
2021-10-20 18:17:07 -07:00
Dockerfile
bug fix in detection testing
2021-07-12 11:21:23 +02:00
indexes.conf.tar
Lots more changes to how we run. Now based off of the splunk/splunk container on docker hub as much as possible. We use ENV arguments to install required apps. Still only at 50% pass rate, so we need more troubleshooting to figure out why.
2021-10-11 10:23:42 -07:00
requirements.txt
Initial changes and testing for local dockerized detection testing service
2021-09-17 15:14:17 -07:00