HelloWorld Feed
This is the Feed Hello World integration for getting started with your feed integration.
Data Enrichment & Threat Intelligence · HelloWorld · Feed
Details
| ID | HelloWorld Feed |
|---|---|
| Provider | Open Source |
| Category | Data Enrichment & Threat Intelligence |
| From Version | 5.5.0 |
| Docker Image | demisto/python3:3.12.13.10116658 |
| Supported Modules | Agentix XSIAM Exposure Management |
README
Here are a few sentences regarding the FeedHelloWorld integration.
This is the place to explain what the integration does, and provide the users with information that will help them use it easily.
Configuration parameters
feed— Fetch indicatorsurl— Server's URL (required)feedReputation— Indicator ReputationfeedReliability— Source Reliability (required)tlp_color— Traffic Light Protocol ColorfeedFetchInterval— Feed Fetch IntervalfeedBypassExclusionList— Bypass exclusion listinsecure— Trust any certificate (not secure)proxy— Use system proxy settingsfeedExpirationPolicy—feedExpirationInterval—feedTags— Tagscreate_relationships— Create relationships
Commands (1)
-
helloworld-get-indicatorsGets indicators from the feed.
category: Data Enrichment & Threat Intelligence provider: Open Source commonfields: id: HelloWorld Feed version: -1 configuration: - defaultvalue: 'true' display: Fetch indicators name: feed type: 8 required: false - defaultvalue: https://openphish.com/feed.txt display: Server's URL additionalinfo: Should be feed of type .txt. For using other types of feed, modify the parsing in the python file. name: url required: true type: 0 - additionalinfo: Indicators from this integration instance will be marked with this reputation defaultvalue: Bad display: Indicator Reputation name: feedReputation options: - None - Good - Suspicious - Bad type: 18 required: false - additionalinfo: Reliability of the source providing the intelligence data defaultvalue: F - Reliability cannot be judged display: Source Reliability name: feedReliability options: - A - Completely reliable - B - Usually reliable - C - Fairly reliable - D - Not usually reliable - E - Unreliable - F - Reliability cannot be judged required: true type: 15 - additionalinfo: The Traffic Light Protocol (TLP) designation to apply to indicators fetched from the feed display: Traffic Light Protocol Color name: tlp_color options: - RED - AMBER - GREEN - WHITE type: 15 required: false - defaultvalue: '30' display: Feed Fetch Interval name: feedFetchInterval type: 19 required: false - additionalinfo: When selected, the exclusion list is ignored for indicators from this feed. This means that if an indicator from this feed is on the exclusion list, the indicator might still be added to the system. defaultvalue: 'true' display: Bypass exclusion list name: feedBypassExclusionList type: 8 required: false - display: Trust any certificate (not secure) name: insecure type: 8 required: false - display: Use system proxy settings name: proxy type: 8 required: false - display: '' name: feedExpirationPolicy type: 17 options: - never - interval - indicatorType - suddenDeath required: false - display: '' name: feedExpirationInterval type: 1 required: false - additionalinfo: Supports CSV values. display: Tags name: feedTags type: 0 required: false - defaultvalue: 'true' display: Create relationships name: create_relationships type: 8 required: false display: HelloWorld Feed name: HelloWorld Feed script: commands: - arguments: - defaultValue: '10' description: The maximum number of results to return. name: limit description: Gets indicators from the feed. name: helloworld-get-indicators dockerimage: demisto/python3:3.12.13.10116658 feed: true runonce: false script: '-' subtype: python3 type: python fromversion: 5.5.0 description: This is the Feed Hello World integration for getting started with your feed integration. tests: - No tests (auto formatted)