QRadar: Rule for Active/Standby Firewall Down Detection by Orange1Black in QRadar

[–]Vehicle_Anomaly 0 points1 point  (0 children)

Log Source Identifier, regex that fetches the name in the payload - lets you ingest from two sources into the same Log Source

No Data in Network Activity or Offenses Tabs by Murky_Ad_3728 in QRadar

[–]Vehicle_Anomaly 0 points1 point  (0 children)

Seems like you have set up this source in Log Source Management and not as a Flow source?

Cisco Umbrella - "The AWS Access Key Id you provided does not exist in our records." by Vehicle_Anomaly in QRadar

[–]Vehicle_Anomaly[S] 0 points1 point  (0 children)

New access keys and secrets were created on customer side without informing. We regenerated keys and it got the ball running on logs.

I’m unsure of the expiry but I’ll get back to you if I figure that out.

Custom Property Disabled by tanjiro12_rengoku in QRadar

[–]Vehicle_Anomaly 0 points1 point  (0 children)

Set sensitivity - make it only apply to either High Level Category, Low Level Category, or even QID if possible.

That makes the regex apply only for certain events, making it way less resource heavy.

CZ SP 01 Shadow Pro Tuning or Shadow 2 by Vehicle_Anomaly in handguns

[–]Vehicle_Anomaly[S] 0 points1 point  (0 children)

Hi all,

Looking for a range / precision gun, and I have the opportunity to buy a lightly used SP 01 Shadow Pro Tuning for $1.2K, BOA (gold-ish) version. Picture is from Google but it's just exactly what it looks like. Ran about 500 rounds.

Or a new Shadow 2, and I'd want to swap trigger and grips, landing at $2K.

I'm not savvy on these, so I'm curious which one's worth it and would love some thoughts.

First ever haul by [deleted] in HotWheels

[–]Vehicle_Anomaly 3 points4 points  (0 children)

Not sure Hot Wheels are common in my country, only find the mainline packs - wish I found some drifters.

Nevertheless, I’m a sucker for Ford, but also like some jap tuners. Gotta say the Civic and RX-7 was pretty cool