Move dataset from files to file

This commit is contained in:
Wes Lambert
2020-06-23 17:43:28 +00:00
parent d7693f9b55
commit af451573eb

View File

@@ -30,6 +30,7 @@
{ "rename": { "field": "message2.extracted", "target_field": "file.extracted.filename", "ignore_missing": true } },
{ "rename": { "field": "message2.extracted_cutoff", "target_field": "file.extracted.cutoff", "ignore_missing": true } },
{ "rename": { "field": "message2.extracted_size", "target_field": "file.extracted.size", "ignore_missing": true } },
{ "set": { "field": "dataset", "value": "file" } },
{ "pipeline": { "name": "zeek.common" } }
]
}