certeu / droid

A pySigma wrapper to manage detection rules.
https://certeu.github.io/droid-docs/
European Union Public License 1.2
29 stars 3 forks source link

Custom field raw rules not working #31

Closed territestgogo closed 4 days ago

territestgogo commented 5 days ago

Greetings, I tried custom_field with raw rules but not working (Only working with sigma rules) https://certeu.github.io/droid-docs/custom_fields/

Can you add option for raw rules custom field ???, is very helpfull. Thanks you very much.!!!!

territestgogo commented 4 days ago

Nvm, comment action splunk in droid_config.toml fix it