# Setup module for Sigma toolchain # derived from example at https://github.com/pypa/sampleproject/blob/master/setup.py from setuptools import setup, find_packages # To use a consistent encoding from codecs import open from os import path here = path.abspath(path.dirname(__file__)) # Get the long description from the README file with open(path.join(here, 'README.md'), encoding='utf-8') as f: long_description = f.read() setup( name='sigmatools', version='0.11', description='Tools for the Generic Signature Format for SIEM Systems', long_description=long_description, long_description_content_type="text/markdown", url='https://github.com/Neo23x0/sigma', author='Sigma Project', author_email='thomas@patzke.org', license='LGPLv3', classifiers=[ 'Development Status :: 4 - Beta', 'Intended Audience :: Developers', 'Intended Audience :: Information Technology', 'Intended Audience :: System Administrators', 'Topic :: Security', 'Topic :: Internet :: Log Analysis', 'License :: OSI Approved :: GNU Lesser General Public License v3 (LGPLv3)', 'Programming Language :: Python :: 3.6', 'Programming Language :: Python :: 3.7', 'Environment :: Console', ], keywords='security monitoring siem logging signatures elasticsearch splunk ids sysmon', packages=['sigma', 'sigma.backends', 'sigma.config', 'sigma.parser'], python_requires='~=3.6', install_requires=['PyYAML', 'pymisp'], extras_require={ 'test': ['coverage', 'yamllint'], }, data_files=[ ('etc/sigma', [ 'config/qualys.yml', 'config/elk-defaultindex.yml', 'config/arcsight.yml', 'config/sumologic.yml', 'config/netwitness.yml', 'config/elk-windows.yml', 'config/helk.yml', 'config/elk-defaultindex-logstash.yml', 'config/elk-linux.yml', 'config/logpoint-windows-all.yml', 'config/thor.yml', 'config/elk-winlogbeat.yml', 'config/elk-defaultindex-filebeat.yml', 'config/splunk-windows-all.yml', 'config/qradar.yml', 'config/powershell-windows-all.yml', ]), ('etc/sigma/generic', [ 'config/generic/sysmon.yml', 'config/generic/windows-audit.yml', ])], scripts=[ 'sigmac', 'merge_sigma', 'sigma2misp', ] )