Merge pull request #12634 from Security-Onion-Solutions/dougburks-patch-1

FEATURE: Add Events column layout for event.module system #12628
This commit is contained in:
Doug Burks
2024-03-22 05:52:23 -04:00
committed by GitHub

View File

@@ -1064,6 +1064,15 @@ soc:
- event.action - event.action
- event.outcome - event.outcome
- event.dataset - event.dataset
':system:':
- soc_timestamp
- process.name
- process.pid
- user.effective.name
- user.name
- system.auth.sudo.command
- event.dataset
- message
server: server:
bindAddress: 0.0.0.0:9822 bindAddress: 0.0.0.0:9822
baseUrl: / baseUrl: /