Skip to content

Commit 592ab97

Browse files
authored
Add files via upload
1 parent 2de820b commit 592ab97

1 file changed

Lines changed: 6 additions & 0 deletions

File tree

  • Windows系统安全事件应急响应/conf

Windows系统安全事件应急响应/conf/config.py

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -30,6 +30,12 @@
3030
'4779':'断开到一台 Windows 主机的会话'
3131
}
3232

33+
#读取指定的日志
34+
login_name='安全'
35+
36+
#要过滤出的事件ID,没有请留空
37+
login_id='4672'
38+
3339
#查找出特定的端口号,没有请留空
3440
port=''
3541

0 commit comments

Comments
 (0)