Stay organized with collections
Save and categorize content based on your preferences.
Change log for CHECKPOINT_EDR
Date
Changes
2024-05-09
Enhancement- Parsed logs with "event_type" as "empty".
- Added support for the MEPP, Compliance, Anti-Malware, and Threat Emulation
logs.
2022-09-07
Enhancement- Parsed logs with event_type as "empty".
- mapped "client_ip" to "event.edr.network.target_ip".
- mapped "origin" to "event.edr.network.target_ip" if client_ip empty.
- mapped "subject" to "event.edr.task.task_name".
- mapped "host_name" to "event.edr.client.hostname".
- mapped "ifdir" to "event.edr.network.direction".
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2024-11-19 UTC."],[],[]]