diff --git a/Packs/AWS-EC2/Scripts/AwsEC2SyncAccounts/README.md b/Packs/AWS-EC2/Scripts/AwsEC2SyncAccounts/README.md index b3a7aeea1954..44a4e0afa4ec 100644 --- a/Packs/AWS-EC2/Scripts/AwsEC2SyncAccounts/README.md +++ b/Packs/AWS-EC2/Scripts/AwsEC2SyncAccounts/README.md @@ -46,4 +46,4 @@ There are no outputs for this script. >|Id|Arn|Name|Email|JoinedMethod|JoinedTimestamp|Status| >|---|---|---|---|---|---|---| >| 111222333444 | arn:aws:organizations::111222333444:account/o-abcde12345/111222333444 | Name | user@xsoar.com | CREATED | 2023-09-04 09:17:14.299000+00:00 | ACTIVE | ->| 111222333444 | arn:aws:organizations::111222333444:account/o-abcde12345/111222333444 | ferrum-techs | user@xsoar.com | INVITED | 2022-07-25 09:11:23.528000+00:00 | SUSPENDED | +>| 111222333444 | arn:aws:organizations::111222333444:account/o-abcde12345/111222333444 | John Doe | user@xsoar.com | INVITED | 2022-07-25 09:11:23.528000+00:00 | SUSPENDED | diff --git a/Packs/AWS-Organizations/Integrations/AWSOrganizations/README.md b/Packs/AWS-Organizations/Integrations/AWSOrganizations/README.md index b7dd999175f7..886bed8196b5 100644 --- a/Packs/AWS-Organizations/Integrations/AWSOrganizations/README.md +++ b/Packs/AWS-Organizations/Integrations/AWSOrganizations/README.md @@ -338,7 +338,7 @@ Lists all the accounts in the organization or a specific account by ID. "Id": "111222333444", "JoinedMethod": "INVITED", "JoinedTimestamp": "2022-07-25 09:11:23.528000+00:00", - "Name": "ferrum-techs", + "Name": "John Doe", "Status": "SUSPENDED" } ], @@ -354,7 +354,7 @@ Lists all the accounts in the organization or a specific account by ID. >|Id|Arn|Name|Email|JoinedMethod|JoinedTimestamp|Status| >|---|---|---|---|---|---|---| >| 111222333444 | arn:aws:organizations::111222333444:account/o-abcde12345/111222333444 | Name | user@xsoar.com | CREATED | 2023-09-04 09:17:14.299000+00:00 | ACTIVE | ->| 111222333444 | arn:aws:organizations::111222333444:account/o-abcde12345/111222333444 | ferrum-techs | user@xsoar.com | INVITED | 2022-07-25 09:11:23.528000+00:00 | SUSPENDED | +>| 111222333444 | arn:aws:organizations::111222333444:account/o-abcde12345/111222333444 | john-doe | user@xsoar.com | INVITED | 2022-07-25 09:11:23.528000+00:00 | SUSPENDED | ### aws-org-organization-get diff --git a/Packs/CrowdStrikeFalcon/Integrations/CrowdStrikeFalcon/test_data/input_data.py b/Packs/CrowdStrikeFalcon/Integrations/CrowdStrikeFalcon/test_data/input_data.py index 3a5c23ab3cd2..a8047755a6c1 100644 --- a/Packs/CrowdStrikeFalcon/Integrations/CrowdStrikeFalcon/test_data/input_data.py +++ b/Packs/CrowdStrikeFalcon/Integrations/CrowdStrikeFalcon/test_data/input_data.py @@ -176,7 +176,7 @@ "seconds_to_triaged": 2250786, "severity": 2, "show_in_ui": True, - "source_account_domain": "ENV11.FERRUM-TECHS.LOCAL", + "source_account_domain": "ENV11.JOHN-DOE.LOCAL", "source_account_name": "morganf", "source_account_object_sid": "S-1-5-21-4043902054-3757442694-3243833439-1141", "source_account_sam_account_name": "morganf", @@ -282,7 +282,7 @@ context_idp_detection = { 'name': 'IDP Detection ID: 20879a8064904ecfbb62c118a6a19411:ind:20879a8064904ecfbb62c118a6a19411:C0BB6ACD-8FDC-4CBA-9CF9-EBF3E28B3E56', 'occurred': '2023-04-20T11:13:10.424647Z', 'last_updated': '2023-06-27T09:29:52.448779709Z', - 'rawJSON': '{"added_privileges": ["AdministratorsRole"], "aggregate_id": "aggind:20879a8064904ecfbb62c118a6a19411:C0BB6ACD-8FDC-4CBA-9CF9-EBF3E28B3E56", "cid": "20879a8064904ecfbb62c118a6a19411", "comment": "new test comment new test comment2 new test comment2 new test comment2 new test comment2 new test comment new test comment new test comment new test comment new test comment2 new test comment2 new test comment new test comment2 new test comment2 comment", "composite_id": "20879a8064904ecfbb62c118a6a19411:ind:20879a8064904ecfbb62c118a6a19411:C0BB6ACD-8FDC-4CBA-9CF9-EBF3E28B3E56", "confidence": 20, "context_timestamp": "2023-04-20T11:12:03.089Z", "crawl_edge_ids": {"Sensor": ["XNWu1KJ3f7ck@.W>%?R;?(%>fETtmdN.<_m*o\'\'\\"CCUmBn.;18rN6.!:g%ohR0te,H;Z\\\\DK\\"=MJe1?:_Y=XZj>E=nHY5ge>3^9:\'(g:)A\'RG0W,kPj.CNpo$W@\\"o+ta@8q\'lE4T!!e@D;nls7!2S0cEcXKeuua2Q+<<8!bpJ`SjuN\'Y.FcK0JOE\\"K_hb8DEP5rc6I]%?R;?(%>fETtmdN.<_m*o\'\'\\"CCUmBn.;18rN6.!:g%ohR0te,H;Z\\\\DK\\"=MJe1?:_Y=XZj>E=nHY5ge>3^9:\'(g:)A\'RG0W,kPj.CNpo$W@\\"o+ta@8q\'lE4T!!e@D;nls7!2S0cEcXKeuua2Q+<<8!bpJ`SjuN\'Y.FcK0JOE\\"K_hb8DEP5rc6I]{'severity': 'NORMAL', 'type': 'LDAP_SIGNING_DISABLED'},
{'severity': 'NORMAL', 'type': 'SPOOLER_SERVICE_RUNNING'} |\n", + "expected_hr": "### Identity entities\n|Primary Display Name|Secondary Display Name|Is Human|Is Programmatic|Risk Score|Risk Score Severity|Risk Factors|\n|---|---|---|---|---|---|---|\n| DC1ENV11ADC02 | dc1env11adc02.env11.john-doe.local | false | false | 0.65 | MEDIUM | {'severity': 'MEDIUM', 'type': 'LDAPS_CHANNEL_BINDING'},
{'severity': 'NORMAL', 'type': 'LDAP_SIGNING_DISABLED'},
{'severity': 'NORMAL', 'type': 'SPOOLER_SERVICE_RUNNING'} |\n", "expected_ec": [ { "Ishuman": false, @@ -35,7 +35,7 @@ ], "Riskscore": 0.65, "Riskscoreseverity": "MEDIUM", - "Secondarydisplayname": "dc1env11adc02.env11.ferrum-techs.local" + "Secondarydisplayname": "dc1env11adc02.env11.john-doe.local" } ], "expected_res_len": 1