Change log for FORTINET_DHCP
Date | Changes |
---|---|
2022-11-21 | Enhancement:
- Mapped the field "srcip" to "principal.ip". - Mapped the field "srcport" to "principal.port". - Mapped the field "srccountry" to "principal.location.country_or_region". - Mapped the field "interface" to "principal.hostname". - Mapped the field "user_name" to "principal.user.user_display_name". - Mapped the field "srcuuid" to "principal.user.product_object_id". - Mapped the field "host_name" to "intermediary.hostname". - Mapped the field "dstip" to "target.ip". - Mapped the field "dstport" to "target.port". - Mapped the field "dstcountry" to "target.location.country_or_region". - Mapped the field "application" to "target.application". - Mapped the field "dstuuid" to "target.user.product_object_id". - Mapped the field "url" to "target.url". - Mapped the field "profile" to "target.resource.name". - Mapped the field "sessionid" to "network.session_id". - Mapped the field "direction" to "network.direction". - Mapped the field "proto" to "network.ip_protocol". - Mapped the field "duration" to "network.session_duration.seconds". - Mapped the field "sentbyte" to "network.sent_bytes". - Mapped the field "rcvdbyte" to "network.received_bytes". - Mapped the field "level" to "security_result.severity_details". - Mapped the field "policyid" to "security_result.rule_id". - Mapped the field "policyname" to "security_result.rule_name". - Mapped the field "policytype" to "security_result.rule_type". - Mapped the field "catdesc" to "security_result.category_details". - Mapped the field "crlevel" to "security_result.severity". - Mapped the field "crscore" to "security_result.severity_details". - Mapped the field "srcintf", "srcintfrole", "dstintf", "dstintfrole" and "craction" to "security_result.detection_fields". - Mapped the field "sentpkt", "rcvdpkt" and "appcat" to "additional.fields". - Mapped the field "action" to "security_result.action" and "security_result.action_details". |