Skip to content

Commit d970669

Browse files
authored
Merge pull request #129 from rm-socprime/preset_xdr_event_log
preset xdr_event_log
2 parents 54ae153 + e022419 commit d970669

File tree

5 files changed

+5
-5
lines changed

5 files changed

+5
-5
lines changed

uncoder-core/app/translator/mappings/platforms/palo_alto_cortex/windows_application.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@ platform: Palo Alto XSIAM
22
source: windows_application
33

44
default_log_source:
5-
dataset: microsoft_windows_raw
5+
preset: xdr_event_log
66

77
field_mapping:
88
EventID: action_evtlog_event_id

uncoder-core/app/translator/mappings/platforms/palo_alto_cortex/windows_powershell.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@ source: windows_powershell
33

44

55
default_log_source:
6-
dataset: microsoft_windows_raw
6+
preset: xdr_event_log
77

88
field_mapping:
99
EventID: action_evtlog_event_id

uncoder-core/app/translator/mappings/platforms/palo_alto_cortex/windows_security.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@ platform: Palo Alto XSIAM
22
source: windows_security
33

44
default_log_source:
5-
dataset: microsoft_windows_raw
5+
preset: xdr_event_log
66

77
field_mapping:
88
EventID: action_evtlog_event_id

uncoder-core/app/translator/mappings/platforms/palo_alto_cortex/windows_sysmon.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@ source: windows_sysmon
33

44

55
default_log_source:
6-
dataset: microsoft_windows_raw
6+
preset: xdr_event_log
77

88
field_mapping:
99
EventID: action_evtlog_event_id

uncoder-core/app/translator/mappings/platforms/palo_alto_cortex/windows_system.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@ platform: Palo Alto XSIAM
22
source: windows_system
33

44
default_log_source:
5-
dataset: microsoft_windows_raw
5+
preset: xdr_event_log
66

77
field_mapping:
88
EventID: action_evtlog_event_id

0 commit comments

Comments
 (0)