Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Srcip/dstip does not work #26

Open
glonghi34 opened this issue Jun 25, 2024 · 1 comment
Open

Srcip/dstip does not work #26

glonghi34 opened this issue Jun 25, 2024 · 1 comment
Assignees

Comments

@glonghi34
Copy link

Hello, sorry for the English, I'm from Brazil.
The integration you did is working very well, but the search for the SRCIP/DSTIP fields is not working.
Is there anything I can do?

@misje
Copy link
Owner

misje commented Jun 26, 2024

Can you please help me understand your issue. What alerts do you expect to result in findings in your OpenCTI instance? The only alert group currently looked up with srcip/src_ip etc. is "ids".

If possible, please give me your alert in its full JSON. Remember to remove any sensitive data from it.

@misje misje self-assigned this Jun 26, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants