Skip to main content

Correlate dnstap files with MISP

Project description

pdnssoc-cli

Correlate dnstap files with MISP threat intelligence.

This tool parses JSON and compressed files created by go-dnscollector.

Installation

pdnssoc-cli can be fetched from the following sources:

PyPi

pip install pdnssoc-cli

Configuration

Configuration can be provided using the --config flag in yaml format. An example configuration file can be found here.

If no config flag is provided, the default file is /etc/pdnssoc-cli/config.yml.

Usage

Usage: python -m pdnssoccli.pdnssoccli [OPTIONS] COMMAND [ARGS]...

Options:
  -c, --config FILE  Read option defaults from the specified yaml file
                     [default: /etc/pdnssoc-cli/config.yml]
  --help             Show this message and exit.

Commands:
  alert       Raise alerts for spotted incidents
  correlate   Correlate input files and output matches
  daemonize   Run in daemonized mode according to configuration
  fetch-iocs  Fetch IOCs from intelligence sources

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

pdnssoc-cli-0.0.3.tar.gz (39.1 kB view details)

Uploaded Source

Built Distribution

pdnssoc_cli-0.0.3-py3-none-any.whl (17.9 kB view details)

Uploaded Python 3

File details

Details for the file pdnssoc-cli-0.0.3.tar.gz.

File metadata

  • Download URL: pdnssoc-cli-0.0.3.tar.gz
  • Upload date:
  • Size: 39.1 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/4.0.2 CPython/3.11.8

File hashes

Hashes for pdnssoc-cli-0.0.3.tar.gz
Algorithm Hash digest
SHA256 6334f18fe5d8d101f4b7259d46343182a70fd544d47abf498e19581c26e2c29e
MD5 cad4f07548bc46f867acfc9f58768911
BLAKE2b-256 b293687899b41637b403b17af18ff9760a31722c691707e7f0a7b4e1f659d706

See more details on using hashes here.

File details

Details for the file pdnssoc_cli-0.0.3-py3-none-any.whl.

File metadata

  • Download URL: pdnssoc_cli-0.0.3-py3-none-any.whl
  • Upload date:
  • Size: 17.9 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/4.0.2 CPython/3.11.8

File hashes

Hashes for pdnssoc_cli-0.0.3-py3-none-any.whl
Algorithm Hash digest
SHA256 45f332d6f2ff4aaf2c00ac561071f89b9298490810bbc8c762ebbf3066356eae
MD5 e61c3ef2457191dce3ed40460f10e553
BLAKE2b-256 2869829ace497bc1b94df90b52de8f93deaef2ca6bf6df172a227e0a862d4830

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page