mirror of
https://github.com/socfortress/Wazuh-Rules.git
synced 2025-10-23 08:12:16 +00:00
Update 200300-packetbeat_rules.xml
This commit is contained in:
committed by
GitHub
parent
4cdc9485bd
commit
1c1f1727b7
@@ -31,9 +31,9 @@
|
||||
<options>no_full_log</options>
|
||||
<group>http</group>
|
||||
</rule>
|
||||
<!-- TEMP RULE FOR WINDOWS PACKETBEAT ICMP -->
|
||||
<!-- EXCLUDE PACKETBEAT ICMP -->
|
||||
|
||||
<rule id="200303" level="3">
|
||||
<rule id="200303" level="1">
|
||||
<decoded_as>json</decoded_as>
|
||||
<field name="network.transport">icmp</field>
|
||||
<mitre>
|
||||
|
Reference in New Issue
Block a user