CiscoSE / SnortBlocklistImporter
This is a script to import Cisco Talos's IP Blacklist into a Tag (Host Group) within Stealthwatch. This will also optionally create a Custom Security Event (CSE) to alert on traffic to the blacklisted IPs.
☆11Updated last year
Alternatives and similar repositories for SnortBlocklistImporter:
Users that are interested in SnortBlocklistImporter are comparing it to the libraries listed below
- ☆24Updated 6 years ago
- Python script that parses a Cisco IOS configuration file and generates a report to efficiently perform an IT Security Audit☆37Updated 5 years ago
- Offline config file scanner to test for STIG compliance with flexible rule sets☆47Updated 5 years ago
- Sync /etc/hosts.deny with Cisco Talos IP Blacklist☆11Updated 6 years ago
- Wiki for general information about repositories☆23Updated 6 years ago
- Create an Excel Spreadsheet from your firewall rules in Palo Alto Networks Panorama☆13Updated 8 years ago
- ☆11Updated 9 years ago
- Python script utilizing Cisco Firepower Management APIs☆18Updated 8 years ago
- Tool that assists in migrating firewall rules from Cisco to Checkpoint. Will optimize rules for you (rationalization, reuse merging, etc.…☆21Updated 4 years ago
- ☆62Updated 4 months ago
- Official Palo Alto Networks MineMeld docker☆17Updated 5 years ago
- Palo Alto Networks Rule Parser☆16Updated 8 years ago
- Cisco AMP threat hunting scripts☆14Updated 5 months ago
- Convert snort IPS signatures to FortiGate custom IPS signature syntax.☆39Updated 3 months ago
- Repo for Automations and other solutions for Elastic SIEM/Security.☆18Updated 3 years ago
- A tool for bulk URL queries against Palo Alto Networks' PAN-DB cloud database☆18Updated last year
- To parse though Cisco IOS and ASA configs(and compare 2) to pull information out and into a text file or DB.☆17Updated 5 years ago
- Repository with logstash, elasticsearch and kibana configs. Palo Alto, Juniper, BlueCoat, etc.☆18Updated 10 months ago
- Meraki Dashboard API☆15Updated 4 years ago
- Learning labs for firepower management center REST APIs☆30Updated 3 years ago
- Documentation and Tools for Cisco's PSIRT openVuln API☆108Updated last week
- A few quick recipes for those that do not have much time during the day☆22Updated 5 months ago
- MineMeld nodes for MISP☆19Updated last year
- Collection of sample scripts for interacting with Cisco Stealthwatch Enterprise APIs.☆19Updated last year
- DirectFire Firewall Converter - Network Security, Next-Generation Firewall Configuration Conversion, Firewall Syntax Translation and Fire…☆56Updated 3 years ago
- This is a place for various teamplates and automation resources for Cisco Secure Firewall☆36Updated 6 months ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- This script provides a Python library with methods to authenticate to various sources of threat intelligence and query IPs for the latest…☆18Updated 2 months ago
- Incident Response Network Tools☆24Updated 3 years ago
- FTD Ansible module☆40Updated 2 years ago