FEATURE: Add Events table columns for event.module strelka #12716

This commit is contained in:
Doug Burks
2024-04-02 10:42:20 -04:00
committed by GitHub
parent a678a5a416
commit 2f03cbf115

View File

@@ -570,6 +570,15 @@ soc:
- file.mime_type - file.mime_type
- log.id.fuid - log.id.fuid
- event.dataset - event.dataset
':strelka:file':
- soc_timestamp
- file.name
- file.size
- hash.md5
- file.source
- file.mime_type
- log.id.fuid
- event.dataset
':suricata:': ':suricata:':
- soc_timestamp - soc_timestamp
- source.ip - source.ip