Intel mapping enforcement and winlog.verion

This commit is contained in:
Wes Lambert
2020-10-15 12:42:33 +00:00
parent c81ee9621d
commit af9daa4d71

View File

@@ -253,6 +253,20 @@
"type":"object", "type":"object",
"dynamic": true "dynamic": true
}, },
"intel":{
"type":"object",
"dynamic": true,
"properties":{
"indicator":{
"type":"text",
"fields":{
"keyword":{
"type":"keyword"
}
}
}
}
},
"interface":{ "interface":{
"type":"object", "type":"object",
"dynamic": true "dynamic": true
@@ -474,6 +488,9 @@
}, },
"event_data":{ "event_data":{
"type":"object" "type":"object"
},
"version":{
"type":"long"
} }
} }
}, },