Commit Graph

12 Commits

Author SHA1 Message Date
Chris Moore 22fd96e80b
Add documentation for detector rule creation updates (#4499)
* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4413 detection rule updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

---------

Signed-off-by: cwillum <cwmmoore@amazon.com>
2023-07-19 17:44:07 -07:00
Chris Moore 49e8391d86
Add documentation for OCSF field mapping and correlation engine API (#4549)
* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* add missing param descriptions (#4555)

Signed-off-by: Subhobrata Dey <sbcd90@gmail.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* Revert "fix#4500 ocsf fields and api"

This reverts commit c6db296b2e30dd9e201cdf510d77e1af7335801d.

merge conflict with same edits on another branch#

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* Revert "fix#4500 ocsf fields and api"

This reverts commit 7a70dc39644b5020685015245d755131c2264e03.

merge conflict with second branch
:wq

* Revert "fix#4500 ocsf fields and api"

This reverts commit ef13a74b403984e0c205a79119ec301f90b7dcc1.

* fix#4500 edits post merge conflict

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4500 ocsf fields and api

Signed-off-by: cwillum <cwmmoore@amazon.com>

---------

Signed-off-by: cwillum <cwmmoore@amazon.com>
Signed-off-by: Subhobrata Dey <sbcd90@gmail.com>
Co-authored-by: Subhobrata Dey <sbcd90@gmail.com>
2023-07-17 13:52:13 -07:00
Chris Moore 4f0fb7e9c6
Add documentation for Security Analytics UI updates for 2.8 (#4208)
* fix#4134 SecAnalytics UI updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4134 SecAnalytics UI updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4134 SecAnalytics UI updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4134 SecAnalytics UI updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4134 SecAnalytics UI updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4134 SecAnalytics UI updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4134 SecAnalytics UI updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4134 SecAnalytics UI updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#4134 SecAnalytics UI updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

---------

Signed-off-by: cwillum <cwmmoore@amazon.com>
2023-06-02 13:19:55 -07:00
Chris Moore cffae76ac2
Add correlation engine to Security Analytics documentation (#3814)
* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3566 correlation engine

Signed-off-by: cwillum <cwmmoore@amazon.com>

---------

Signed-off-by: cwillum <cwmmoore@amazon.com>
2023-05-02 10:36:27 -07:00
Chris Moore b49f5fcd76
Add documentation for log type updates in Security Analytics - pt. 2 (#3083)
* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6-II

Signed-off-by: cwillum <cwmmoore@amazon.com>

---------

Signed-off-by: cwillum <cwmmoore@amazon.com>
2023-02-28 10:13:59 -08:00
Chris Moore 2baa0aa05c
Add documentation for log type updates in Security Analytics (#3066)
* fix#3018-sec-analytics-2.6

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#3018-sec-analytics-2.6

Signed-off-by: cwillum <cwmmoore@amazon.com>

---------

Signed-off-by: cwillum <cwmmoore@amazon.com>
2023-02-24 16:14:44 -08:00
Chris Moore e98ee6d833
Update field mapping documentation for Security Analytics (#2422)
* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-field-mappings

Signed-off-by: cwillum <cwmmoore@amazon.com>

Signed-off-by: cwillum <cwmmoore@amazon.com>
2023-01-23 10:31:46 -08:00
Chris Moore f89e111983
Updates to Security Analytics documentation (#2408)
* fix#2400-revisions-to-current

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-SecAnalytics-updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-SecAnalytics-updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-SecAnalytics-updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-SecAnalytics-updates

Signed-off-by: cwillum <cwmmoore@amazon.com>

Signed-off-by: cwillum <cwmmoore@amazon.com>
2023-01-18 09:46:44 -08:00
Chris Moore e641a3bb0c
Add new Rules documentation that covers YAML Editor view (#2407)
* fix#2400-yaml-editor-rules

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-yaml-editor-rules

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#2400-yaml-editor-rules

Signed-off-by: cwillum <cwmmoore@amazon.com>

Signed-off-by: cwillum <cwmmoore@amazon.com>
2023-01-13 17:24:40 -08:00
Chris Moore 605edd5ac3
Add documentation for Security Analytics plugin (#1824)
* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* Delete admin-api.md

* Delete api-index.md

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics (#1901)

Signed-off-by: Subhobrata Dey <sbcd90@gmail.com>

Signed-off-by: Subhobrata Dey <sbcd90@gmail.com>
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#939-sec-analytics

Signed-off-by: cwillum <cwmmoore@amazon.com>

Signed-off-by: cwillum <cwmmoore@amazon.com>
Signed-off-by: Subhobrata Dey <sbcd90@gmail.com>
Co-authored-by: Subhobrata Dey <sbcd90@gmail.com>
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
2022-11-18 10:19:06 -08:00
Chris Moore 2aecb0a0bc
Add images to documentation for multiple option authentication (#1902)
* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc-fin

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc-fin

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc-fin

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-authc-fin

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-auth-editorial

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-auth-editorial

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-multi-auth-editorial

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1488-add-images-multiauth

Signed-off-by: cwillum <cwmmoore@amazon.com>

Signed-off-by: cwillum <cwmmoore@amazon.com>
2022-11-16 09:09:20 -08:00
Chris Moore 0a60ed6e9c
Add documentation for aggregate view of saved objects by tenant in Dashboards (#1786)
* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* Delete tenant-index.md

* Delete multi-tenancy-config.md

* Delete mt-agg-view.md

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

* fix#1773-agg-view-sv-obj

Signed-off-by: cwillum <cwmmoore@amazon.com>

Signed-off-by: cwillum <cwmmoore@amazon.com>
2022-11-10 09:48:25 -08:00