Skip to main content

Correlate dnstap files with MISP

Project description

pdnssoc-cli

Correlate dnstap files with MISP threat intelligence.

This tool parses JSON and compressed files created by go-dnscollector.

Installation

pdnssoc-cli can be fetched from the following sources:

PyPi

pip install pdnssoc-cli

Configuration

Configuration can be provided using the --config flag in yaml format. An example configuration file can be found here.

If no config flag is provided, the default file is /etc/pdnssoc-cli/config.yml.

Usage

Usage: python -m pdnssoccli.pdnssoccli [OPTIONS] COMMAND [ARGS]...

Options:
  -c, --config FILE  Read option defaults from the specified yaml file
                     [default: /etc/pdnssoc-cli/config.yml]
  --help             Show this message and exit.

Commands:
  alert       Raise alerts for spotted incidents
  correlate   Correlate input files and output matches
  daemonize   Run in daemonized mode according to configuration
  fetch-iocs  Fetch IOCs from intelligence sources

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

pdnssoc_cli-0.0.5.tar.gz (39.2 kB view details)

Uploaded Source

Built Distribution

pdnssoc_cli-0.0.5-py3-none-any.whl (18.0 kB view details)

Uploaded Python 3

File details

Details for the file pdnssoc_cli-0.0.5.tar.gz.

File metadata

  • Download URL: pdnssoc_cli-0.0.5.tar.gz
  • Upload date:
  • Size: 39.2 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/5.0.0 CPython/3.12.3

File hashes

Hashes for pdnssoc_cli-0.0.5.tar.gz
Algorithm Hash digest
SHA256 49bb8f3697eb31a97f762d92cc63f28ba5685951d70b6b3ad5d05ab65dd86eee
MD5 de13da096060c46fd65253265835d728
BLAKE2b-256 1078fdbe27626489e16f7eda082c787a74f76a86eb7365ba63a4b164f29aa0b0

See more details on using hashes here.

File details

Details for the file pdnssoc_cli-0.0.5-py3-none-any.whl.

File metadata

  • Download URL: pdnssoc_cli-0.0.5-py3-none-any.whl
  • Upload date:
  • Size: 18.0 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/5.0.0 CPython/3.12.3

File hashes

Hashes for pdnssoc_cli-0.0.5-py3-none-any.whl
Algorithm Hash digest
SHA256 c934b40ae8a92db35d6251c54493de062c8189ee1fbceb99db261140dacc862d
MD5 bb51d949d1027a28ba97761b2b1dd2e3
BLAKE2b-256 1f24744f8ed21390b48ac3b2adea837cea4e684f86788de75984c086c440d331

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page