Merge pull request #12725 from Security-Onion-Solutions/dougburks-patch-1

FEATURE: Add Events table columns for event.module strelka #12716
This commit is contained in:
Doug Burks
2024-04-02 10:54:15 -04:00
committed by GitHub

View File

@@ -570,6 +570,15 @@ soc:
- file.mime_type
- log.id.fuid
- event.dataset
':strelka:file':
- soc_timestamp
- file.name
- file.size
- hash.md5
- file.source
- file.mime_type
- log.id.fuid
- event.dataset
':suricata:':
- soc_timestamp
- source.ip