Skip to content

Commit

Permalink
mock McAfee ESM v2 (#11911)
Browse files Browse the repository at this point in the history
Co-authored-by: esharf <esahrf@paloaltonetworks.com>
  • Loading branch information
esharf and esharf authored Mar 22, 2021
1 parent 429f119 commit 2adb76f
Show file tree
Hide file tree
Showing 7 changed files with 406 additions and 6 deletions.
6 changes: 6 additions & 0 deletions Packs/McAfee_ESM/.pack-ignore
Original file line number Diff line number Diff line change
@@ -1,2 +1,8 @@
[file:McAfee_ESM_v2.yml]
ignore=IN126

[file:McAfee_ESM_v2_-_Test.yml]
ignore=auto-test

[file:playbook-McAfee_ESM_Watchlists_-_Test.yml]
ignore=auto-test
Original file line number Diff line number Diff line change
@@ -0,0 +1,79 @@
id: McAfee ESM Watchlists - Test v10.2.0
version: -1
name: McAfee ESM Watchlists - Test v10.2.0
starttaskid: "0"
tasks:
"0":
id: "0"
taskid: 1e7cf6f9-14b4-45c7-b937-dc825fc72bd8
type: start
task:
id: 1e7cf6f9-14b4-45c7-b937-dc825fc72bd8
version: -1
name: ""
iscommand: false
brand: ""
nexttasks:
'#none#':
- "1"
separatecontext: false
view: |-
{
"position": {
"x": 50,
"y": 50
}
}
note: false
timertriggers: []
ignoreworker: false
skipunavailable: false
quietmode: 0
isoversize: false
"1":
id: "1"
taskid: 839e8fba-b6eb-4848-baf2-30142d8ba4fa
type: regular
task:
id: 839e8fba-b6eb-4848-baf2-30142d8ba4fa
version: -1
name: set playbook to McAfee ESM Watchlists - Test
description: set playbook for current incident to McAfee ESM Watchlists - Test
script: Builtin|||setPlaybook
type: regular
iscommand: true
brand: Builtin
scriptarguments:
incidentId:
simple: ${incident.id}
name:
simple: McAfee ESM Watchlists - Test
separatecontext: false
view: |-
{
"position": {
"x": 50,
"y": 230
}
}
note: false
timertriggers: []
ignoreworker: false
skipunavailable: false
quietmode: 0
isoversize: false
view: |-
{
"linkLabelsPosition": {},
"paper": {
"dimensions": {
"height": 275,
"width": 380,
"x": 50,
"y": 50
}
}
}
inputs: []
outputs: []
fromversion: 5.0.0
Original file line number Diff line number Diff line change
@@ -0,0 +1,79 @@
id: McAfee ESM Watchlists - Test v10.3.0
version: -1
name: McAfee ESM Watchlists - Test v10.3.0
starttaskid: "0"
tasks:
"0":
id: "0"
taskid: 16a33cfe-c4e3-4f45-b26b-762e3dddb08f
type: start
task:
id: 16a33cfe-c4e3-4f45-b26b-762e3dddb08f
version: -1
name: ""
iscommand: false
brand: ""
nexttasks:
'#none#':
- "1"
separatecontext: false
view: |-
{
"position": {
"x": 50,
"y": 50
}
}
note: false
timertriggers: []
ignoreworker: false
skipunavailable: false
quietmode: 0
isoversize: false
"1":
id: "1"
taskid: 16c4a958-4f2b-42b5-957e-65370906c88d
type: regular
task:
id: 16c4a958-4f2b-42b5-957e-65370906c88d
version: -1
name: set playbook to McAfee ESM Watchlists - Test
description: set playbook for current incident to McAfee ESM Watchlists - Test
script: Builtin|||setPlaybook
type: regular
iscommand: true
brand: Builtin
scriptarguments:
incidentId:
simple: ${incident.id}
name:
simple: McAfee ESM Watchlists - Test
separatecontext: false
view: |-
{
"position": {
"x": 50,
"y": 230
}
}
note: false
timertriggers: []
ignoreworker: false
skipunavailable: false
quietmode: 0
isoversize: false
view: |-
{
"linkLabelsPosition": {},
"paper": {
"dimensions": {
"height": 275,
"width": 380,
"x": 50,
"y": 50
}
}
}
inputs: []
outputs: []
fromversion: 5.0.0
Original file line number Diff line number Diff line change
@@ -0,0 +1,79 @@
id: McAfee ESM Watchlists - Test v11.3
version: -1
name: McAfee ESM Watchlists - Test v11.3
starttaskid: "0"
tasks:
"0":
id: "0"
taskid: 0eb7b2f9-b429-4e5e-84e5-6c82553f84ca
type: start
task:
id: 0eb7b2f9-b429-4e5e-84e5-6c82553f84ca
version: -1
name: ""
iscommand: false
brand: ""
nexttasks:
'#none#':
- "1"
separatecontext: false
view: |-
{
"position": {
"x": 50,
"y": 50
}
}
note: false
timertriggers: []
ignoreworker: false
skipunavailable: false
quietmode: 0
isoversize: false
"1":
id: "1"
taskid: 365253e3-d529-425c-850d-08f577cb41f3
type: regular
task:
id: 365253e3-d529-425c-850d-08f577cb41f3
version: -1
name: set playbook to McAfee ESM Watchlists - Test
description: set playbook for current incident to McAfee ESM Watchlists - Test
script: Builtin|||setPlaybook
type: regular
iscommand: true
brand: Builtin
scriptarguments:
incidentId:
simple: ${incident.id}
name:
simple: McAfee ESM Watchlists - Test
separatecontext: false
view: |-
{
"position": {
"x": 50,
"y": 230
}
}
note: false
timertriggers: []
ignoreworker: false
skipunavailable: false
quietmode: 0
isoversize: false
view: |-
{
"linkLabelsPosition": {},
"paper": {
"dimensions": {
"height": 275,
"width": 380,
"x": 50,
"y": 50
}
}
}
inputs: []
outputs: []
fromversion: 5.0.0
79 changes: 79 additions & 0 deletions Packs/McAfee_ESM/TestPlaybooks/McAfee_ESM_v2_-_Test_v10.2.0.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,79 @@
id: McAfee ESM v2 - Test v10.2.0
version: -1
name: McAfee ESM v2 - Test v10.2.0
starttaskid: "0"
tasks:
"0":
id: "0"
taskid: 736fa03c-6b54-4219-a649-639f9c28d3d0
type: start
task:
id: 736fa03c-6b54-4219-a649-639f9c28d3d0
version: -1
name: ""
iscommand: false
brand: ""
nexttasks:
'#none#':
- "1"
separatecontext: false
view: |-
{
"position": {
"x": 50,
"y": 50
}
}
note: false
timertriggers: []
ignoreworker: false
skipunavailable: false
quietmode: 0
isoversize: false
"1":
id: "1"
taskid: 489f7197-11f3-4b80-897d-3015cf7a6b9b
type: regular
task:
id: 489f7197-11f3-4b80-897d-3015cf7a6b9b
version: -1
name: set playbook to McAfee ESM v2 - Test
description: set playbook for current incident to McAfee ESM v2 - Test
script: Builtin|||setPlaybook
type: regular
iscommand: true
brand: Builtin
scriptarguments:
incidentId:
simple: ${incident.id}
name:
simple: McAfee ESM v2 - Test
separatecontext: false
view: |-
{
"position": {
"x": 50,
"y": 230
}
}
note: false
timertriggers: []
ignoreworker: false
skipunavailable: false
quietmode: 0
isoversize: false
view: |-
{
"linkLabelsPosition": {},
"paper": {
"dimensions": {
"height": 275,
"width": 380,
"x": 50,
"y": 50
}
}
}
inputs: []
outputs: []
fromversion: 5.0.0
Loading

0 comments on commit 2adb76f

Please sign in to comment.