Stay organized with collections
Save and categorize content based on your preferences.
Change log for UMBRELLA_IP
Date
Changes
2022-08-22
Enhancement:
- Mapped the field 'action' to 'security_result.action' and 'security_result.action_details'.
- Added grok for the field 'query_type' and mapped it to 'network.dns.questions.type'.
- Mapped the field 'domain' to 'network.dns.questions.name'.
- Mapped 'DNS' to 'network.application_protocol'.
- Mapped the field 'response_code' to 'network.dns.response_code'.
- Mapped 'security_result.category' to 'NETWORK_MALICIOUS' where the field 'categories' contains 'Malware' and 'NETWORK_SUSPICIOUS' where 'categories' contains 'Potentially Harmful'.
- Mapped the field 'categories' to 'security_result.category_details'.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2024-11-26 UTC."],[],[]]