Skip to main content

EDL Monitor

Download With Dependencies

This content pack can monitor EDL contents a by emailing the content of an EDL as a zipped file to a specified user at an interval (simply configure a job to run the playbook included), and/or simply monitor the EDL for availability and email the user if the EDL is not available

EDL logger

-You can use the playbook (or a cloned copy) with a job to check the EDL on a schedule, or you can use the integration commands in your own playbooks as needed
-While the EDL contents are timestamped and attached in zip files, due to the nature of the files, zipping will likely not save much space
This is only tested with Gmail using smtp.gmail.com as the server, and you will need to enable 2FA for your google account and create an app password as the regular credentials will no longer work due to new Google security settings. See https://support.google.com/accounts/answer/185833?hl=en&authuser=2 for details

EDL logger

-You can use the playbook (or a cloned copy) with a job to check the EDL on a schedule, or you can use the integration commands in your own playbooks as needed
-While the EDL contents are timestamped and attached in zip files, due to the nature of the files, zipping will likely not save much space
This is only tested with Gmail using smtp.gmail.com as the server, and you will need to enable 2FA for your google account and create an app password as the regular credentials will no longer work due to new Google security settings. See https://support.google.com/accounts/answer/185833?hl=en&authuser=2 for details

PUBLISHER

Andrew Murret

PLATFORMS

Cortex XSOARCortex XSIAM

INFO

Supported ByCommunity
CreatedApril 10, 2023
Last ReleaseJuly 18, 2023
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
Content packs are licensed by the Publisher identified above and subject to the Publisher’s own licensing terms. Palo Alto Networks is not liable for and does not warrant or support any content pack produced by a third-party Publisher, whether or not such packs are designated as “Palo Alto Networks-certified” or otherwise. For more information, see the Marketplace documentation.