mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2026-04-25 14:07:49 +02:00
000d15a53c
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
52 lines
1.2 KiB
Plaintext
52 lines
1.2 KiB
Plaintext
{
|
|
"processors": [
|
|
{
|
|
"rename": {
|
|
"field": "_ingest._value.kismet_common_seenby_num_packets",
|
|
"target_field": "_ingest._value.packets_seen",
|
|
"ignore_missing": true
|
|
}
|
|
},
|
|
{
|
|
"rename": {
|
|
"field": "_ingest._value.kismet_common_seenby_uuid",
|
|
"target_field": "_ingest._value.serial_number",
|
|
"ignore_missing": true
|
|
}
|
|
},
|
|
{
|
|
"rename": {
|
|
"field": "_ingest._value.kismet_common_seenby_first_time",
|
|
"target_field": "_ingest._value.first_seen",
|
|
"ignore_missing": true
|
|
}
|
|
},
|
|
{
|
|
"rename": {
|
|
"field": "_ingest._value.kismet_common_seenby_last_time",
|
|
"target_field": "_ingest._value.last_seen",
|
|
"ignore_missing": true
|
|
}
|
|
},
|
|
{
|
|
"date": {
|
|
"field": "_ingest._value.first_seen",
|
|
"formats": [
|
|
"epoch_second"
|
|
],
|
|
"target_field": "_ingest._value.first_seen",
|
|
"ignore_failure": true
|
|
}
|
|
},
|
|
{
|
|
"date": {
|
|
"field": "_ingest._value.last_seen",
|
|
"formats": [
|
|
"epoch_second"
|
|
],
|
|
"target_field": "_ingest._value.last_seen",
|
|
"ignore_failure": true
|
|
}
|
|
}
|
|
]
|
|
} |