Skip to content

Distribute scheduling and experiment with throttling #422

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Draft
wants to merge 7 commits into
base: main
Choose a base branch
from

Conversation

pyth0n1c
Copy link
Contributor

@pyth0n1c pyth0n1c commented Jul 1, 2025

Distribute detections as equally as possible with different runtimes.
Enable throttling for all detections with default period of 86400s (24hrs) and using risk_objects+threat_objects as the fields.

pyth0n1c added 4 commits July 1, 2025 10:20
from RBA risk_object and threat_objects
fields with a period of 86400s, 24 hrs.
No alert_groups are configured.
Experimental content with invalid RBA
configs per the detection SPL generate
warnings, not errors.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant