panos_syslog IP indicator - withdraw
I am trying to create an IPv4 indicator list based on PAN-OS threat logs.
Below is the rule code attached to the syslogminer class stdlib.syslogMiner.
RULE:
age_out:
default: last_seen+30d
interval: 1800
sudden_death: false
attributes:
c