Skip to content

Commit

Permalink
Removed unneeded mapping + added typing
Browse files Browse the repository at this point in the history
  • Loading branch information
thomaspatzke committed Aug 30, 2023
1 parent 1c9f79d commit ee91fe2
Show file tree
Hide file tree
Showing 2 changed files with 4 additions and 7 deletions.
6 changes: 1 addition & 5 deletions sigma/pipelines/sysmon/__init__.py
Original file line number Diff line number Diff line change
@@ -1,7 +1,3 @@
from typing import Callable, Dict
from .sysmon import sysmon_pipeline
from sigma.processing.pipeline import ProcessingPipeline

pipelines : Dict[str, Callable[[], ProcessingPipeline]] = {
"sysmon": sysmon_pipeline,
}
from sigma.processing.pipeline import ProcessingPipeline
5 changes: 3 additions & 2 deletions sigma/pipelines/sysmon/sysmon.py
Original file line number Diff line number Diff line change
@@ -1,6 +1,7 @@
from sigma.processing.transformations import AddConditionTransformation, ChangeLogsourceTransformation
from sigma.processing.conditions import LogsourceCondition
from sigma.processing.pipeline import ProcessingItem, ProcessingPipeline
from sigma.pipelines.base import Pipeline

sysmon_generic_logsource_eventid_mapping = { # map generic Sigma log sources to Sysmon event ids
"process_creation": 1,
Expand Down Expand Up @@ -29,8 +30,8 @@
"sysmon_error": 255,
}


def sysmon_pipeline():
@Pipeline
def sysmon_pipeline() -> ProcessingPipeline:
return ProcessingPipeline(
name="Generic Log Sources to Sysmon Transformation",
priority=10,
Expand Down

0 comments on commit ee91fe2

Please sign in to comment.