LimaCharlie Log In
v2
v1
Deprecated
v2
Contents
x
Getting Started
Sensors
Query Console
Detection and Response
Events
Platform Management
Outputs
Add-Ons
FAQ
Release Notes
Powered by
Tutorials
2 Articles
in this category
Contributors
Share this
Print
Share
Dark
Light
Contents
Tutorials
2 Articles
in this category
Written by
Matt Bromiley
,
Eric Capuano
,
Whitney Champion
Share
Dark
Light
Writing and Testing Rules
Detection & Response ( D&R ) Rules are similar to Google Cloud Functions or AWS Lambda. They allow you to push D&R rules to the LimaCharlie cloud where the rules will be applied in real-time to data coming from the sensors. D&R ...
Written by
Matt Bromiley
,
Eric Capuano
Updated on : 15 Oct 2024
Create a D&R Rule Using a Threat Feed
A common use case for D&R rules is to use them to compare telemetry against known malicious IPs, domain names, or file hashes via threat feeds. With LimaCharlie, it is easy to leverage public threat feeds or create your own. To configure a th...
Written by
Matt Bromiley
,
Whitney Champion
,
Eric Capuano
Updated on : 05 Oct 2024