From c61421e19ec5f467e2a44591451c73b9def1e476 Mon Sep 17 00:00:00 2001 From: v-sabiraj Date: Wed, 26 Jun 2024 12:08:05 +0530 Subject: [PATCH] Updated contentSchemaVersion for HYAS Protect --- .../Data/Solution_HyasProtectLogs.json | 12 +++++------- Solutions/HYAS Protect/Package/3.0.3.zip | Bin 0 -> 7751 bytes .../HYAS Protect/Package/mainTemplate.json | 16 ++++++++-------- 3 files changed, 13 insertions(+), 15 deletions(-) create mode 100644 Solutions/HYAS Protect/Package/3.0.3.zip diff --git a/Solutions/HYAS Protect/Data/Solution_HyasProtectLogs.json b/Solutions/HYAS Protect/Data/Solution_HyasProtectLogs.json index 9ace7c866ff..81eeb5a9523 100644 --- a/Solutions/HYAS Protect/Data/Solution_HyasProtectLogs.json +++ b/Solutions/HYAS Protect/Data/Solution_HyasProtectLogs.json @@ -3,18 +3,16 @@ "Author": "Hyas", "Logo": "", "Description": "Built on the underpinning technology of HYAS Insight threat intelligence, HYAS Protect is a protective DNS solution that combines authoritative knowledge of attacker infrastructure and unrivaled domain-based intelligence to proactively enforce security and block the command and control (C2) communication used by malware, ransomware, phishing, and other forms of cyber attacks.", - "Workbooks": [], - "Playbooks": [], - "Data Connectors": [ + "Data Connectors": [ "Data Connectors/HYASProtect_FunctionApp.json" ], "Parsers": [ "Solutions/HYAS Protect/Parsers/HYASProtectDNS.yaml" ], - "Hunting Queries": [], + "Hunting Queries": [], "BasePath": "D:/Azure-Sentinel", - "Version": "3.0.2", - "Metadata": "SolutionMetadata.json", + "Version": "3.0.3", + "Metadata": "SolutionMetadata.json", "TemplateSpec": true, "Is1PConnector": false - } +} \ No newline at end of file diff --git a/Solutions/HYAS Protect/Package/3.0.3.zip b/Solutions/HYAS Protect/Package/3.0.3.zip new file mode 100644 index 0000000000000000000000000000000000000000..fc43fe7a7fb3ea4e73393e09fab9d7106d9de5c1 GIT binary patch literal 7751 zcmZ{Jb8sDiv-OQ_vuSLnv2EM7Z*1GP8Z<_eG-}MoZj2inH^$fB_h#O_Ki=EjnVsF4 zJ^!Aab5!J^ps@h}06ak6Xiew9PtI}+764$t0s!#-ZOz>*O@Wr0wi1?BwobM{TW2R` zJ9lTN9-Xs9A};KYq#=GCD4Vn;i)KTF5H0MV=j0-GC8x}FvsOVo97-d#qofYX^FM2c zTCQyb5Vmg&*wZZJJLDX3)~%<(ch8BhhwqR0aY8^_W<=70Cfdi}Ks_ z2ZSI)-IVVYHq#sTls@VCN^%TZYPFSkS}rVsPY-I0-!qK}3k2%Yvshw5G}iZUs>BWl z2G(*q&0vj+WuBJnai7`Eg<1H9a1RxU0Vwk+*KsD6@F;Z3ty$b}>ScIt9h-fbK$Zi0 zCk_YZUvA`=N{1Wci{OZ+9E2=A-ItMD>t-Ex>xI!4X8z2EwDNl&u7>=^#$!71^gMLg z_bU)$o*ELDWb+Q_K1P?2``v2La8K)x?$9#(9q(e`t?M)5AA>Q=%P#N{hv35K=r#e% zbYjw94ys>Rld%zvlSGH^{kT$eEt$UKhi0a=CTjdM8KoqAUQ(LaBLozNy`L{cex$eD zJQmzDl683s9qXz@mL$7_ralZ3MC+Pm$T#oaf#A85aSkNQA4T6f!%n}Cjey`Ol@E}HP8fXfuzs?FKBY8&gKzBt(CvHj*KH_p|&t@{v^i_`! zzW03}H9SXlRCVKws6O|RNV=hX2OUu%A{`2sA!mu{tb(Qg1?9#sm=Clnc)@r5vt^_G zWj4xy3*BR(waKd<^uuMLxm5_ps5Z!m?&g~#6pp+3_bk$V0JK8eQkN3qu;t!g-Z}(vuz|9 zPQWk9?>!eg@jKuy$9J=bI|FUt9+h`jUEN(Xm@l?|r!BQVEkXi{1&3cg;0k!OU}9tW z%FA5dQNuA(LTpOxUdB2U6TMTUF=cHrLXEDcVEUfi&5^~Fxr$*V?x)>2aw>plj_*Iv zW!%JTNdw-O!00*IDE_331427&r^ZV7sk;7)T_{(+A-{LZ^EuVW_ZQL@(#FRt)6%4+ zU7l1t__I(oUEdR7xCB-j>> z*%(X>0ueat+T^99?cleqBt-?A9IhBwk}0dL{@ukTcftbRq=%~n%_ z^j|$J%3%E0>DR|+VI0c$oWHDUuNAic=;BU0nW)=9(C(Z%5(G5&utyb!c^C*n@sZnyh{O6*{e6A+^G zY3cCbtylX_sWpsNP{s2%)c}Sh)-9FQW1<^Hs@CM?eat$g| zEvrJNzu^f$I>%@zfe+5ZU1d#pV}$Xi)HF}cqy0Mb5hy@)B%97ob79)> z=oX(%jXeT^8L#>_R`P>VRxmW`gx)H;s4@m`8ayjgfhT0WD_|&cw)@ib$I0ffvf)Qj zOrSQxzG^1V`8wsqUe9|I=|MtF4ZCGT9DfWRL#{7NS-M4jhdBEmHB9zH_N?z1F?2`a z)cv%I&ZaK{RKkMVVeu7lw0D~rK$3uAsTrF+J`CWit-=^uy!TgS0uKxZS-ki+ARbk_ zKm{t1Eqf5T7t)L_dJ$I5Tno3tjL7Vg2GdK-dJ~XP{`%^O;;)=czx0vxUi#F^{d+eg(@HV9&3Bs-l48onM zIYyJ^6fVRERI-#4Jh|1GjUJ2l)*__AC(TLBuM3O9VWfAG6Eq#rcOS{ww?*8+kjOD1 zmJ|7mH}jf_r6M?`Y}A%{-LuucsI5&EF*Ivm6wMEd`$%&=2iUtzgXUQ~J{s#D$2_Fo zO>upNtre=lM%=LH>sBS{GU!3SJo9ms=%kS#kF1oK)nd2Ox0)fpR>UF;3yVy=4*ov7 zAI2l6Va>o&;i=t}Tv1QMjVWIkI`D2gSW07IgI}G|y|sHl1Mo5GthYDYh8@7_p-2h_ z@Cw4d_J(V6gX|J??mUPJa$OKnJtk}*RW-sQLqa`DWH9el!v&Nk#GFdJfy~k8c{N#S zP8sLK19r+a;`egXJa}`>Mh+#o8{2wJz+%0nXhg;z_L>4}x6Z$g1hPY(4aRx32WzKO z5vDy(M2ALcVh#0be>G8aJ|HIr0$uK9Dgb1t4ku0gP@Eb!Axlo$Lv6I{QrD|p)ft0x ze3TsgVw0m{S-prW4j41Szs(ojWD4}hY9CA@Svz_qEJ8}5dT_9lP6B`;F>qMG}O1gAvwRJ!$Rf-Q<+S$?ya))j=qGbfP zGlmN+K7Z80j#OaqiZDNI*R1xCqLTHh(c7Cam9i0LhBPlvC z)n5d6{7ZqwB!-t4hw1PB*=(X?t#YD-1{4`SUKYq|zwJh@A3#10q@%B$qt2(#Lv-0Z zo@i1T=dVpyX_?ROZ+=rK7kyOODRqbCj#eBgC}JW$vAUxXsaZ}8z9hLaffNErkh3qw z_#O9QMNY1da**cvX#a9At zEj{8bLyqULxilQxTUcO6>5{Mlm6sL2>>2gL|-u`$7dy4ca&RvFaFNPr3WJu8Cw z$I(L0(V&GRDKrj=f)B4KLo#iLr(%K$+Pwl%9n)UCY>=yX)Q>5LjD zJ(Zd#nU(5SuSB%-0Zq!!#eMXr06n*qz+cJ7)RsFVW+W8o3s=5ZozmC(y_2MF%_=$*rj@ zgtfaPgo zfXWtHc@*sE=c&SJpW@0UdnPrKl>4zDX;ExnbRQ+w9tgW)46#fg5YE*RI4T@xMF-L; z^WZt}pil|Lh;Qo6uxMw$^Fp^fts=A3N2qnK;{J2Y!cizC8W!b%Ye*7YJNy9mEzdT7Xj_5cRbU86j@?EY*pkO4l2!93=HMVfXNDQ`S;mI%IZqgUp5VM>^Iq^ zB77*S<2vIsW>7x?S-qc6Z_h?qTmQf)IQ4|3xuQ?=@us3b;Yd;)p^@TS)0>kS!3)=n zhM4op1X~fJ$#Mw8sE8S^q)`($-f0kOHkCkkTN=QBjpY-96&w;&-K?bzCw7;rn1yar z-osBzgK>9)Nzgv99ZE(cPsQ(BDP{0Vjcu+WqhW?(Ky|Pe@hAO(QYymj$INO3yuDj(~Eh|%)_0{QQuaZe;t^D3+X>jx=nM8Sf-D= z_vmjc;yh+AkVTsHjzU=3_3(zTA9+l#AwX8LWJ*RI z=*ymN=7ebhbjMtdKzA8bYJYl`16Xj1cj=r?cy>$0b{X(V@E(jx8!umP$4$cXYBd;aC=whg9!u~7+lOO~Cu9yVh3lpX_h$jQN zb~i3fL&@e0N;&a+6+M`RFtL+VRrMvOyjeD7t@N@I^Wu++?IC-a+z@V)+SF7HH5OMW87A zFB-#*)W`*F)$mdHW}Ny7*Pk%$4jL1h>538wR0&8n*`f+Psex_8gBJz$OI|0cw`==3 z(I)IGabvQe=8F5afiVgb5E2_18+w=_ZNh8G6Aykci7ItTb{Pt+4SOLbM&+mAL@)`u zm3a;|`#mBy-w0FGih3wjwxL;(8g*t6(KxXyaGy$G3PS1zG2Z%#0GU$lOG?|ss>ZDp z)W9Bd|H$y3j+XAo!ZGtbg^Z^Co=d&~cUXmVunY?9gFh_pv0<(XIx(Z`O{N%>HrZ$C z?|E)Ihni7Wn8H0DwgaO&YXWA^h00&MGDs@k46&wa5mzuX8$l(uRGA#s>*sIy|r& zSDaI$QAeCrj#p~o5o9l>8k~*}?Td%~Jmvb?eJvD?V{ZFinwj;{0JC{?)}z zln7Y~1gkW5DW}h4N@{yvAoZ*Ekg!u8kvCqRJS4!l)FXxYWRNaLyqRvYww6~f>k09a zFby*g8vR!E3j~EXpdaU#%?yr@!1Ko*@AsY)NUVSegkcn@VPZ9J@oY;GXV=phsq}{q z>VAeJjpWOVrW=2SMkQli7$AZ0$J73AGaL?YMcLF40)*`TV|UZxv9g<>AE?~C&L^Gp zL`Mn4)AsBm#o)##MoFt-MhtS?Y6W~~w89BNq_7j>qkxR)+v`IV07BT0z>ZM8by17F z;>3>7%icuAPfCM+3Wr=M)CW@HaCBkC3pN0P*O=0F`U{qxS-3sBvAVyiVJ8IL@NUfmh z$2Lw9=H3eCV^$e$Bj&}nTiT^}B)+{R8VNr08hVE`P{HUSN$qwD6no30i6FCLB?F)MG*k zQeV+8LR#@0mXhz)f?#{4-OP){+@5!A2;&>8Yt^85s#lctbGk9`Ul>pjob}oL_j~NH z10ybTC+4Tn9qb%{EAtma29=&?dfYBQiheS*8WY<{Y3f(^I)YnzMn02{das-@^xnZE z)#eX%k26ex9bv*-8)$fM(mmU)&+B5^aY2sPHB%ozb>ZAs=^D$ml#pXed6=HFK)*eq z<(8^%u+w!Hl7mbLT}-ZPPLdl(TH@=Dk;))k@jn+4c0!%QjuA}GbPhrMCHTRat48cT`iI*o*Ctmw?Y;fA6iS#BuLrZbOufh1I~57oohN9oCq~$ z&+R1jt54T)AC0SX0~hFD(7yUJE!{e5u;`aO5z8822Ipdy6~-`AUUajusu^cR{(;KB-d9AM??5vt}vo7)je z_1Kv`8s7@nipS@yzil0?v$ecF_%WbEEl@*gU$6YCBsNb_!}SxQ=9iaNPft1G`+|n; zRW+ZVxsafSsj!AA|N06~R=}t@PTQ>(n&#?%RgnqK11{-p$=VB=y5lBLZt0_RfXmyj ze^@Y?34wGw&AtCdcyZnAEJ6-1C;*f- z@@>}k_e}SKpK+2@6kK0x=eeW0B};dGcm0OBeBB?6RSQlylPn)*TK&x{o9(N*XJqqJ-Xwd#R3(tWwq&X9v?0=GYSgQwY-20tJJ;9=yB zX2s`^70b@WXx2pyRU$MKpf1s{oq)$=)lt{|<<<#Iw3NA}f~Yo_k=?#6vBM&gpC#)B z%~ZzRA@3<+n2A#i8v3QDdWVbXs(LK@QEvVMWZzdO>`4k;K$Z`$c3BNrey z8UNdX5<{pUOpgx30IN4zq8pG_x6;@sgt*F_63p9lF(^$!$?*Nm0Yg2S}>{PHe zTi;#wQ0{qgyf_`4h-g*@KdfTFa`hfvu-PV`w_f62L8O>2T(HTbr?-1uE3=A$PgTH^ zWt)4WRwb|BAXc0{$09{@%xkn8(3qB6N2c1R2>s*B{R7HWq)O~M9IbHu+YBhqyxAQ0 z>Al{6@E`jAa?}dAc3F4GTel)Qv3s7@)zrND61r^6?f&iMj?=XnTvV9?t^L8HNR$V1 z3AmB=d$DXNeWd;9plK?6ZBv|oNUjy6 zwAZJxCrRa$chkyC&w$Kemd&PmW)F=L0In7c+sRdYlPPWE7A$$1S zRJ@>PZ?RTh=X1gu9^5p(?b?3tiOQfO$>1a)dX-&V9vP|jk0jHYQOLEh4U?$cwZwz@ z^`>=c+bWK+yOt#&52c#@LK*lHUMY(`UGy7zGO0*mk;UzjW8#K<76q44s(gQqpsRn) zq1LQyk5jYovjzbw_vyp~e(duq=mXE6ky#odSfIoLqN=xhI>OvPPmuIW zWFMs>ejc<*nJ)WW`~g<}eh@JUZJPpfb}?b)z-WlyreAd-`pxlpxDZpaCtWNWWM?SC z(yRvk)coSzI%_AA;4}xU>$>_)+*lD0q?WviPy7xd`}DqqIAz)%=G%vpq_3QuZQ zk7Dl7W-?`ID0Gk{J}!H|dHq{!AIIRlCYxU|Z68gw5;pV_jUSElYbk`9ya!LwE^7-8 zV@(j8kedu9;Vo_Qwz*CMjEggEqeQS4B_+h@2~Q1y7Ho{{4H(k~1>>la=9wx;To*M; z0!p?))5d_JSvH%8V#y4a9Ng`XQtfLgC9~%2S;AC2Nwt!Y&v)M;R>$>y+J@_rYstxT z@wuPfB&z)sczG&g{xXDg7*3PepBcWDP@VwsJnMYelt*M~O9m6)H&J}I|L55wX~V~< z6Y$g6pR_lu2r2R<^D}UbiPUZtjzPj>vr|BVlRwEO)(FeomsOh!j;Kdwh|MgwXFsd5 z+>`{|7Ge|?8nVp2Ma$Er;^EhtC}tk>U4Q$ZHhEDAbd)CJm&3(wX1WWV|2|pNX6U6# z9>`2luda(#W;WBCkocjeVM#KSnPoh2^%CQgS>e@v8m{;%6mgwUA za{5$yn`NuGBTqn+PaxFMhna+XWdH8H$iQ#7=bswjA^?V33OSs?s*^8N{>A`bzH z4fwz9+JEvi00KbvpY|{Q5A*hag8Xj+_kT|R3j_=9f04UYq!1H F{Xa)D!K?rP literal 0 HcmV?d00001 diff --git a/Solutions/HYAS Protect/Package/mainTemplate.json b/Solutions/HYAS Protect/Package/mainTemplate.json index 0b35f0e2ec6..e5ed49bdffc 100644 --- a/Solutions/HYAS Protect/Package/mainTemplate.json +++ b/Solutions/HYAS Protect/Package/mainTemplate.json @@ -31,7 +31,7 @@ }, "variables": { "_solutionName": "HYAS Protect", - "_solutionVersion": "3.0.2", + "_solutionVersion": "3.0.3", "solutionId": "hyas.microsoft-sentinel-solution-hyas-protect", "_solutionId": "[variables('solutionId')]", "uiConfigId1": "HYASProtect", @@ -62,7 +62,7 @@ "[extensionResourceId(resourceId('Microsoft.OperationalInsights/workspaces', parameters('workspace')), 'Microsoft.SecurityInsights/contentPackages', variables('_solutionId'))]" ], "properties": { - "description": "HYAS Protect data connector with template version 3.0.2", + "description": "HYAS Protect data connector with template version 3.0.3", "mainTemplate": { "$schema": "https://schema.management.azure.com/schemas/2019-04-01/deploymentTemplate.json#", "contentVersion": "[variables('dataConnectorVersion1')]", @@ -223,7 +223,7 @@ "packageVersion": "[variables('_solutionVersion')]", "packageName": "[variables('_solutionName')]", "packageId": "[variables('_solutionId')]", - "contentSchemaVersion": "3.0.2", + "contentSchemaVersion": "3.0.0", "contentId": "[variables('_dataConnectorContentId1')]", "contentKind": "DataConnector", "displayName": "HYAS Protect (using Azure Functions)", @@ -393,7 +393,7 @@ "[extensionResourceId(resourceId('Microsoft.OperationalInsights/workspaces', parameters('workspace')), 'Microsoft.SecurityInsights/contentPackages', variables('_solutionId'))]" ], "properties": { - "description": "HYASProtectDNS Data Parser with template version 3.0.2", + "description": "HYASProtectDNS Data Parser with template version 3.0.3", "mainTemplate": { "$schema": "https://schema.management.azure.com/schemas/2019-04-01/deploymentTemplate.json#", "contentVersion": "[variables('parserObject1').parserVersion1]", @@ -454,7 +454,7 @@ "packageVersion": "[variables('_solutionVersion')]", "packageName": "[variables('_solutionName')]", "packageId": "[variables('_solutionId')]", - "contentSchemaVersion": "3.0.2", + "contentSchemaVersion": "3.0.0", "contentId": "[variables('parserObject1').parserContentId1]", "contentKind": "Parser", "displayName": "Parser for all Hyas Protect DNS events", @@ -517,9 +517,9 @@ "apiVersion": "2023-04-01-preview", "location": "[parameters('workspace-location')]", "properties": { - "version": "3.0.2", + "version": "3.0.3", "kind": "Solution", - "contentSchemaVersion": "3.0.2", + "contentSchemaVersion": "3.0.0", "displayName": "HYAS Protect", "publisherDisplayName": "HYAS", "descriptionHtml": "

Note: Please refer to the following before installing the solution:

\n

• Review the solution Release Notes

\n

• There may be known issues pertaining to this Solution, please refer to them before installing.

\n

Built on the underpinning technology of HYAS Insight threat intelligence, HYAS Protect is a protective DNS solution that combines authoritative knowledge of attacker infrastructure and unrivaled domain-based intelligence to proactively enforce security and block the command and control (C2) communication used by malware, ransomware, phishing, and other forms of cyber attacks.

\n

Data Connectors: 1, Parsers: 1

\n

Learn more about Microsoft Sentinel | Learn more about Solutions

\n", @@ -572,4 +572,4 @@ } ], "outputs": {} -} +} \ No newline at end of file