Publishing of pySigma-datadog-backend #135
Replies: 4 comments 12 replies
-
Hi! Nice to see that Datadog now also gets supported by pySigma and Sigma CLI! To publish it and get the backend exposed to users of the CLI, a PR to the plugin directory is required. Feel free to provide a pull request, but I can also make this at the weekend. Generally, the best would be to have a stable version released on PyPI. This makes it more accessible to developers who want to integrate the backend in custom tooling and is also cleaner than referring to a source repository or branches. |
Beta Was this translation helpful? Give feedback.
-
Hi Thomas! Thanks for the quick turnaround! I've submitted a PR for Datadog with a |
Beta Was this translation helpful? Give feedback.
-
Hi Thomas, I'm trying to use the which outputs queries with an extra Example:
I've made the fix in the repo here , but when I use the Sigma CLI, I'm not seeing the change picked up. The tests currently have the correct expected output, so I'm curious how the additional I'm hoping the tool will output something like this:
Any help is greatly appreciated! Thanks! Andréa |
Beta Was this translation helpful? Give feedback.
-
I forked the repository and gave you administrative access to the fork, this should have the same effect as transferring the original repository, except that the source repository still exists. |
Beta Was this translation helpful? Give feedback.
-
Hello Sigma Maintainers!
My name is Andrea Piazza and I’m a software engineer on Datadog’s Cloud SIEM team. We’re looking forward to offering support for Sigma Rules in our Cloud SIEM product and are wondering if you can please publish the pysigma-backend-datadog per this part of the ReadMe?
I wanted to bring attention to a couple of areas of our repo that are currently broken due to the Datadog package not being supported by Sigma yet, and I’m happy to help resolve these issues in any way I can:
datadog
is not currently supported in hte Sigma Library. We’ve created a pysigma-datadog-backend-local branch with a workaround hack for local testing and the tests we’ve written pass on this branch./home/runner/work/pysigma-backend-datadog/pysigma-backend-datadog/sigma does not contain any element
I’m expecting this error to be resolved once the Datadog backend is supported. If not, I’d be more than happy to help troubleshoot any error that’s manifesting afterwards.
pySigma-backend-
repositories and I’m wondering if we should also add you under the “maintainer” section as well?On a personal note, I appreciate all of the effort you’ve put in to make contributing to this project so seamless. I really enjoyed working with the pySigma Library and am excited that our customers will be able to increase their coverage with Sigma rules!
I’m looking forward to your feedback, learning how to improve the
pysigma-datadog-repo
and how we can get this supported on pyPi. Please let me know how I can help with the next steps.Thank you,
Andrea Piazza
Beta Was this translation helpful? Give feedback.
All reactions