From d6e337f241945caf4e0d2479572ee53aaa2c5d77 Mon Sep 17 00:00:00 2001 From: Ben Melamed Date: Mon, 23 Sep 2024 14:29:46 +0300 Subject: [PATCH] Fixes the Alert Extended Information widget's script name (#36392) * fixed layout * update RN * fix missing field * Apply suggestions from code review Co-authored-by: Sasha Sokolovich <88268646+ssokolovich@users.noreply.github.com> * removed case_id fields --------- Co-authored-by: Sasha Sokolovich <88268646+ssokolovich@users.noreply.github.com> --- .../layoutscontainer-Cloud_Alerts.json | 175 ++---------------- .../ReleaseNotes/1_0_19.md | 7 + .../CloudIncidentResponse/pack_metadata.json | 2 +- 3 files changed, 28 insertions(+), 156 deletions(-) create mode 100644 Packs/CloudIncidentResponse/ReleaseNotes/1_0_19.md diff --git a/Packs/CloudIncidentResponse/Layouts/layoutscontainer-Cloud_Alerts.json b/Packs/CloudIncidentResponse/Layouts/layoutscontainer-Cloud_Alerts.json index f7818d591b84..8be281237327 100644 --- a/Packs/CloudIncidentResponse/Layouts/layoutscontainer-Cloud_Alerts.json +++ b/Packs/CloudIncidentResponse/Layouts/layoutscontainer-Cloud_Alerts.json @@ -44,192 +44,66 @@ { "dropEffect": "move", "endCol": 2, - "fieldId": "xdrdescription", - "height": 26, - "id": "a79303f0-0d99-11ec-83df-e184d3cc52d9", - "index": 1, - "listId": "caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", - "sectionItemType": "field", - "startCol": 0 - }, - { - "dropEffect": "move", - "endCol": 2, - "fieldId": "xdrincidentid", - "height": 26, - "id": "c2e0ea00-0d99-11ec-83df-e184d3cc52d9", - "index": 1, - "listId": "caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", - "sectionItemType": "field", - "startCol": 0 - }, - { - "dropEffect": "move", - "endCol": 2, - "fieldId": "xdrurl", - "height": 26, - "id": "b2f7e2b0-0d99-11ec-83df-e184d3cc52d9", - "index": 1, - "listId": "caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", - "sectionItemType": "field", - "startCol": 0 - }, - { - "dropEffect": "move", - "endCol": 2, - "fieldId": "xdralertcategory", - "height": 26, - "id": "a3301f00-0d99-11ec-83df-e184d3cc52d9", - "index": 1, - "listId": "caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", - "sectionItemType": "field", - "startCol": 0 - }, - { - "dropEffect": "move", - "endCol": 2, - "fieldId": "xdralertname", - "height": 26, - "id": "a5953820-0d99-11ec-83df-e184d3cc52d9", - "index": 1, - "listId": "caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", - "sectionItemType": "field", - "startCol": 0 - }, - { - "dropEffect": "move", - "endCol": 2, - "fieldId": "xdrdetectiontime", - "height": 26, - "id": "a9356950-0d99-11ec-83df-e184d3cc52d9", - "index": 1, - "listId": "caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", - "sectionItemType": "field", - "startCol": 0 - }, - { - "dropEffect": "move", - "endCol": 2, - "fieldId": "dbotcreated", + "fieldId": "playbookid", "height": 26, - "id": "incident-created-field", + "id": "incident-playbookId-field", "index": 1, "listId": "caseinfoid-psvkrie7fh-field-changed-caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", "sectionItemType": "field", "startCol": 0 }, - { - "dropEffect": "move", - "endCol": 2, - "fieldId": "categoryname", - "height": 26, - "id": "298513a0-ffa4-11ed-8065-135924776b58", - "index": 2, - "listId": "caseinfoid-psvkrie7fh-field-changed-caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", - "sectionItemType": "field", - "startCol": 0 - }, { "dropEffect": "move", "endCol": 2, "fieldId": "severity", "height": 26, "id": "incident-severity-field", - "index": 3, + "index": 2, "listId": "caseinfoid-psvkrie7fh-field-changed-caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", "sectionItemType": "field", "startCol": 0 }, - { - "dropEffect": "move", - "endCol": 2, - "fieldId": "xdrhostcount", - "height": 26, - "id": "d50dc6d0-0d99-11ec-83df-e184d3cc52d9", - "index": 4, - "listId": "caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", - "sectionItemType": "field", - "startCol": 0 - }, { "endCol": 2, - "fieldId": "xdrusercount", + "fieldId": "timestamp", "height": 26, - "id": "cf9fda80-0d99-11ec-83df-e184d3cc52d9", - "index": 4, - "sectionItemType": "field", - "startCol": 0 - }, - { - "dropEffect": "move", - "endCol": 2, - "fieldId": "xdralertcount", - "height": 26, - "id": "a4bba100-0d99-11ec-83df-e184d3cc52d9", - "index": 4, - "listId": "caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", - "sectionItemType": "field", - "startCol": 0 - }, - { - "endCol": 2, - "fieldId": "xdrhighseverityalertcount", - "height": 26, - "id": "16aacde0-0d9a-11ec-83df-e184d3cc52d9", - "index": 4, - "sectionItemType": "field", - "startCol": 0 - }, - { - "endCol": 2, - "fieldId": "xdrmediumseverityalertcount", - "height": 26, - "id": "23c76ec0-0d9a-11ec-83df-e184d3cc52d9", - "index": 4, - "sectionItemType": "field", - "startCol": 0 - }, - { - "endCol": 2, - "fieldId": "xdrlowseverityalertcount", - "height": 26, - "id": "25413d80-0d9a-11ec-83df-e184d3cc52d9", - "index": 4, + "id": "379436e0-7656-11ef-a783-df0b9a7eeed4", + "index": 3, "sectionItemType": "field", "startCol": 0 }, { "dropEffect": "move", - "endCol": 2, - "fieldId": "playbookid", + "endCol": 4, + "fieldId": "categoryname", "height": 26, - "id": "incident-playbookId-field", - "index": 4, + "id": "298513a0-ffa4-11ed-8065-135924776b58", + "index": 1, "listId": "caseinfoid-psvkrie7fh-field-changed-caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", "sectionItemType": "field", - "startCol": 0 + "startCol": 2 }, { "dropEffect": "move", - "endCol": 6, + "endCol": 4, "fieldId": "mitreattcktactic", "height": 26, "id": "41242d10-ffa5-11ed-8065-135924776b58", - "index": 0, + "index": 2, "listId": "caseinfoid-psvkrie7fh-field-changed-caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", "sectionItemType": "field", - "startCol": 4 + "startCol": 2 }, { "dropEffect": "move", - "endCol": 6, + "endCol": 4, "fieldId": "mitreattcktechnique", "height": 26, "id": "42aceff0-ffa5-11ed-8065-135924776b58", - "index": 1, + "index": 3, "listId": "caseinfoid-psvkrie7fh-field-changed-caseinfoid-9d68c810-0d99-11ec-83df-e184d3cc52d9", "sectionItemType": "field", - "startCol": 4 + "startCol": 2 } ], "maxW": 3, @@ -247,15 +121,6 @@ "hideName": false, "i": "caseinfoid-1ef783c0-4012-11ed-bd56-1f5a2b2d17b4", "items": [ - { - "endCol": 2, - "fieldId": "xdralerts", - "height": 26, - "id": "22a151e0-4012-11ed-bd56-1f5a2b2d17b4", - "index": 0, - "sectionItemType": "field", - "startCol": 0 - }, { "dropEffect": "move", "endCol": 2, @@ -348,7 +213,7 @@ "minH": 1, "moved": false, "name": "Alert Extended Information", - "query": "CortexXDRAdditionalAlertInformationWidget", + "query": "XCloudAdditionalAlertInformationWidget", "queryType": "script", "static": false, "type": "dynamic", @@ -578,10 +443,10 @@ "type": "workPlan" }, { + "hidden": false, "id": "canvas", "name": "Canvas", - "type": "canvas", - "hidden": false + "type": "canvas" } ] }, diff --git a/Packs/CloudIncidentResponse/ReleaseNotes/1_0_19.md b/Packs/CloudIncidentResponse/ReleaseNotes/1_0_19.md new file mode 100644 index 000000000000..6bc500ba9210 --- /dev/null +++ b/Packs/CloudIncidentResponse/ReleaseNotes/1_0_19.md @@ -0,0 +1,7 @@ + +#### Layouts + +##### Cloud Alerts + +- Replaced the "CortexXDRAdditionalAlertInformationWidget" with "XCloudAdditionalAlertInformationWidget". +- Replaced XDR incident fields with common alert fields. diff --git a/Packs/CloudIncidentResponse/pack_metadata.json b/Packs/CloudIncidentResponse/pack_metadata.json index f447a5250a5c..c005ac96601a 100644 --- a/Packs/CloudIncidentResponse/pack_metadata.json +++ b/Packs/CloudIncidentResponse/pack_metadata.json @@ -2,7 +2,7 @@ "name": "Cloud Incident Response", "description": "This content Pack helps you automate collection, investigation, and remediation of incidents related to cloud infrastructure activities in AWS, Azure, and GCP.", "support": "xsoar", - "currentVersion": "1.0.18", + "currentVersion": "1.0.19", "author": "Cortex XSOAR", "url": "https://www.paloaltonetworks.com/cortex", "email": "",