splunk / contentctl

Splunk Content Control Tool
Apache License 2.0
91 stars 25 forks source link

remove "cloud" from the security_domain enum #314

Closed pyth0n1c closed 1 month ago

pyth0n1c commented 1 month ago

"cloud" was erroneously included as one of the possible security_domains which are used by enterprise security. See the following message, which shows 8 pieces of content failing after this update.

A PR has been created in security_content with fixes to the relevant detections as well: https://github.com/splunk/security_content/pull/3172

image