FIX: Update dashboard and hunt query for firewall logs #12021

This commit is contained in:
Doug Burks
2023-12-18 13:38:04 -05:00
parent 6a1073b616
commit 4d8661d2e0

View File

@@ -465,10 +465,9 @@ soc:
- destination.ip - destination.ip
- destination.port - destination.port
- network.transport - network.transport
- network.direction - network.type
- observer.ingress.interface.name - observer.ingress.interface.name
- event.action - event.action
- event.reason
- network.community_id - network.community_id
':osquery:': ':osquery:':
- soc_timestamp - soc_timestamp