Skip to content

Commit 04adfeb

Browse files
authored
Merge pull request #25 from UncoderIO/fix-spl-rule-description
fix bug while generating description in spl-rule
2 parents 9ba370e + ddeb57a commit 04adfeb

File tree

1 file changed

+1
-5
lines changed

1 file changed

+1
-5
lines changed

siem-converter/app/converter/platforms/splunk/renders/splunk_alert.py

+1-5
Original file line numberDiff line numberDiff line change
@@ -55,13 +55,9 @@ def finalize_query(self, prefix: str, query: str, functions: str, meta_info: Met
5555
rule = rule.replace("<severity_place_holder>", severity_map.get(meta_info.severity, "1"))
5656
rule_description = get_rule_description_str(
5757
description=meta_info.description or 'Autogenerated Splunk Alert.',
58-
license=meta_info.license,
59-
mitre_attack=meta_info.mitre_attack
58+
license=meta_info.license
6059
)
6160
rule = rule.replace("<description_place_holder>", rule_description)
62-
63-
description = f"{meta_info.description or 'Autogenerated Splunk Alert.'} License: {meta_info.license}."
64-
rule = rule.replace("<description_place_holder>", description)
6561
mitre_techniques = self.__create_mitre_threat(meta_info=meta_info)
6662
if mitre_techniques:
6763
mitre_str = f"action.correlationsearch.annotations = {mitre_techniques})"

0 commit comments

Comments
 (0)