Skip to content

Commit

Permalink
added EDR allowlist dashboard example
Browse files Browse the repository at this point in the history
Signed-off-by: Zachary Christensen <zchristensen@splunk.com>
  • Loading branch information
ZachTheSplunker committed Sep 24, 2024
1 parent 7c8d0a3 commit a35b38e
Show file tree
Hide file tree
Showing 4 changed files with 14 additions and 0 deletions.
Binary file added docs/assets/edr_allowlist_dashboard.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
7 changes: 7 additions & 0 deletions docs/dashboards/edr_allowlist_dashboard.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
# EDR Allowlist

A simple add-to-allowlist dashboard.

[View on GitHub :simple-github:](https://github.com/splunk/rba/blob/main/dashboards/edr_allowlist_dashboard.xml){ .md-button .md-button--primary target="_blank" }

![Attack Matrix Risk](../assets/edr_allowlist_dashboard.png)
6 changes: 6 additions & 0 deletions docs/dashboards/index.md
Original file line number Diff line number Diff line change
Expand Up @@ -12,6 +12,12 @@ Portrays risk in your environment through the lense of RBA and the MTRE ATT&CK f

Helpful for tuning new detections.

## [EDR Allowlist](./edr_allowlist_dashboard.md)

<small>:simple-github: [edr_allowlist_dashboard.xml](https://github.com/splunk/rba/blob/main/dashboards/edr_allowlist_dashboard.xml){ target="_blank" }</small>

A simple add-to-allowlist dashboard.

## [RBA Data Source Review](./rba_data_source_overview.md)

<small>:simple-github: [rba_data_source_overview.xml](https://github.com/splunk/rba/blob/main/dashboards/rba_data_source_overview.xml){ target="_blank" }</small>
Expand Down
1 change: 1 addition & 0 deletions mkdocs.yml
Original file line number Diff line number Diff line change
Expand Up @@ -126,6 +126,7 @@ nav:
- dashboards/index.md
- ATT&CK Matrix Risk: dashboards/attack_matrix_risk.md
- Attribution Analytics: dashboards/audit_attribution_analytics.md
- EDR Allowlist: dashboards/edr_allowlist_dashboard.md
- RBA Data Source Review: dashboards/rba_data_source_overview.md
- Risk Attributions: dashboards/risk_attributions.md
- Risk Investigation: dashboards/risk_investigation.md
Expand Down

0 comments on commit a35b38e

Please sign in to comment.