misp-book icon indicating copy to clipboard operation
misp-book copied to clipboard

What misp can do: List of MISP capabilities

Open Nicolas-Pellletier opened this issue 2 years ago • 1 comments

This works serves as a reply to https://github.com/MISP/MISP/issues/9005 issue.

To summarize, it's a list of questions Is MISP capable of ... about interesting feature that might be desired in a threat intelligence platform. It provides interesting information about MISP capabilities.

This list of questions were shared in MISP-gitter chat by MG-Misper and answered partially by @iglocska.

Although the questions were really interesting, the answer didn't bring any information on the way to set it up (yes/no answers). Moreover, some @iglocska 'yes' answer to some question are still confused to me on how concretely to set it up.

The answers that i've made will try to both say if it's currently supported and then describe how in practice this feature is available (how to proceed to get things up). It's really probable that i've made documentation duplicate as i wanted to detail as much as possible the way to concretely make it available. (I know its against the contributing rules but i made it for purpose )

For each questions i've tried to add as much as possible references to the documentation to help the reader to found additional informations.

Answers labbeled with [NOT DONE] tag need to be completed as they do not give much detail about the way in practice to get this feature up. After the label, there are complementary informations/suggestions to precise what other infos should be added to make the answer clearer.

Nicolas-Pellletier avatar Apr 26 '23 07:04 Nicolas-Pellletier

Thanks we will do a quick review internally and merge it soon. Thanks again for the contribution!

adulau avatar Apr 26 '23 21:04 adulau