Azure / Azure-Sentinel-Notebooks

Interactive Azure Sentinel Notebooks provides security insights and actions to investigate anomalies and hunt for malicious behaviors.
MIT License
547 stars 187 forks source link

AutomatedNotebooks-IncidentTriage.ipynb - error when evaluating IPv4 Entity #121

Open gastori opened 2 years ago

gastori commented 2 years ago

When the NB evaluates IP address it displays the initial lookup but then stop with an error.

1.1.1.1, ip address type: Public Whois data retrieved WhoIs data

Getting data from Threat Intel... Getting data from Passive DNS...

MsticpyUserConfigError - No Threat Intel Provider configuration found. image

petebryan commented 1 year ago

Hi @gastori - do you have TI providers configured in your msticpyyaml.com?