Updated logger model
* Updated log schema for signature_rule type from nbb-signature-rule to attack
Added http_proxy option to AWS connect profile and loggers.
Add the action field when parsing the nat_session log type.
Normalize the value of reject in the action field to DENY
MySQL Connector/J 5.1.34 version
HSQLDB JDBC 2.3.2 Version
MariaDB Connector/J 1.8.0 version
Microsoft JDBC Driver for SQL Server 4.0.2206 Version
SQLite JDBC Driver 3.42.0.0
Oracle JDBC Thin Driver 11.0.2 version
Added HTTP proxy and timeout options.
Updated to Sonar app.
* Removed Enterprise dashboard and app manifest.
* Added Sonar app manifest.
* Added Sonar dashboard
* Added up to 5 retries in response to API concurrency limits.
* criminal-ip-get-ip-summary-batch
* criminal-ip-get-vpn-summary-batch
Support Network Blackbox v3.4.2
Support TrusGuard 3.0.0 version.
Added 25 Log Schemas
- module_flag 1010: tg-audit
- module_flag 1011: tg-device-perf
- module_flag 1012: tg-line-failure
- module_flag 1013: tg-line-status
- module_flag 1017: tg-iface-traffic
- module_flag 1030: tg-antivirus
- module_flag 1040: tg-anti-spam
- module_flag 1050: tg-webfilter
- module_flag 1070: tg-content-filter
- module_flag 1080: tg-ipsec-vpn
- module_flag 1090: tg-ssl-vpn
- module_flag 1101: tg-app-control
- module_flag 1102: tg-app-detect
- module_flag 1110: tg-dns-filter
- module_flag 1121: tg-iac
- module_flag 1130: tg-siteguard
- module_flag 1140: tg-qos
- module_flag 1141: tg-lbqos
- module_flag 1150: tg-proxy-auth
- module_flag 1151: tg-proxy-mail
- module_flag 1170: tg-c2-detect
- module_flag 1180: tg-file-scan
- module_flag 1230: tg-dlp
* Parse also CEF:0| prefix version.
* Support AC_EVENT event type.
Support up to AhnLab CPP 1.0.2 version
First release
- Dedicated log parser
- 7 Log schemas
- Logger model
- Dashboard: SQL Audit, CDC, Auth, ACL change, Approval
Fixed AIPS Log Parser bug
- Added parsing of frametype and localstime fields.
- Converted payload field's value in BASE64 format to binary type, same as rawpkt field.
Support DPX v2.0.3 firmware
First release. Support up to v2.7.3
11 Log Schemas
- module_flag 6010: tg-ipx-audit
- module_flag 6011: tg-ipx-device-perf
- module_flag 6012: tg-ipx-iface-traffic
- module_flag 6020, 6021: tg-ipx-session
- module_flag 6030: tg-ipx-attack
- module_flag 6031: tg-ipx-app-control
- module_flag 6040: tg-ipx-qos
- module_flag 6041: tg-ipx-lbqos
- module_flag 6060: tg-ipx-c2-detect
- module_flag 6071: tg-ipx-file-scan-request
- module_flag 6090: tg-ipx-webfilter