Correlate dnstap files with MISP
Project description
pdnssoc-cli
Correlate dnstap files with MISP threat intelligence.
This tool parses JSON and compressed files created by go-dnscollector.
Installation
pdnssoc-cli
can be fetched from the following sources:
PyPi
pip install pdnssoc-cli
Configuration
Configuration can be provided using the --config
flag in yaml format. An example configuration file can be found here.
If no config flag is provided, the default file is /etc/pdnssoc-cli/config.yml
.
Usage
Usage: python -m pdnssoccli.pdnssoccli [OPTIONS] COMMAND [ARGS]...
Options:
-c, --config FILE Read option defaults from the specified yaml file
[default: /etc/pdnssoc-cli/config.yml]
--help Show this message and exit.
Commands:
alert Raise alerts for spotted incidents
correlate Correlate input files and output matches
daemonize Run in daemonized mode according to configuration
fetch-iocs Fetch IOCs from intelligence sources
Project details
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
pdnssoc_cli-0.0.5.tar.gz
(39.2 kB
view details)
Built Distribution
File details
Details for the file pdnssoc_cli-0.0.5.tar.gz
.
File metadata
- Download URL: pdnssoc_cli-0.0.5.tar.gz
- Upload date:
- Size: 39.2 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/5.0.0 CPython/3.12.3
File hashes
Algorithm | Hash digest | |
---|---|---|
SHA256 | 49bb8f3697eb31a97f762d92cc63f28ba5685951d70b6b3ad5d05ab65dd86eee |
|
MD5 | de13da096060c46fd65253265835d728 |
|
BLAKE2b-256 | 1078fdbe27626489e16f7eda082c787a74f76a86eb7365ba63a4b164f29aa0b0 |
File details
Details for the file pdnssoc_cli-0.0.5-py3-none-any.whl
.
File metadata
- Download URL: pdnssoc_cli-0.0.5-py3-none-any.whl
- Upload date:
- Size: 18.0 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/5.0.0 CPython/3.12.3
File hashes
Algorithm | Hash digest | |
---|---|---|
SHA256 | c934b40ae8a92db35d6251c54493de062c8189ee1fbceb99db261140dacc862d |
|
MD5 | bb51d949d1027a28ba97761b2b1dd2e3 |
|
BLAKE2b-256 | 1f24744f8ed21390b48ac3b2adea837cea4e684f86788de75984c086c440d331 |