Added Sonar app manifest.
Parser update
- Fix parsing failures due to long payloads or payloads containing pipes.
First Release
- FireEye NX Migration
- Add CEF log parser, log schema, and logger model
- Support for APT detection dashboard
- Support for extended query commands
Added Sonar app manifest.
SNIPER ONE v3.0, v3.1 Support
- Support LEEF log format.
- Support 15 log schemas: traffic, detection, frame, service, protocol, ethernet, CPS, audit, AR, inline traffic, VIPS traffic, VIPS protocol, VIPS hack, VIPS frame, VIPS service
Added Sonar app manifest.
Added Sonar app manifest.
First Release
- MFI CSV, TSV, WELF Parser
- MFI raw, packet log schemas
- MFI intrusion detection dashboard
Sonar App Support
- Web Insights TCP, UDP Logger Model
- Web Insights v5.0 early log format support
- Web Insights dashboard
First release. Support up to v2.7.5.
- Dedicated log parser
- Logger model
- Traffic and Detection dashboards
First release
- MF2 v2, v3, v4 log parser
- MF2 logger model
- MF2 traffic dashboard
Support Logpresso Sonat platform
- Added sonar dashboards, log schemas, loggers.
First release
- 1Password Sign-in logger and log schema
- 1Password Sign-in dashboard
- 1password-signin-attempts query command
First Release
* Trellix IPS default log format parser
* Trellix IPS Logger Model
* Trellix IPS Intrusion Detection Dashboard
First Release
- MFD v1 log parser
- MFD logger model
- MFD dashboards (6 types)
First Release
* WAPPLES v6, v4 log parser
* WAPPLES logger model
* WAPPLES intrusion detection, performance dashboards
First release
* Dedicated parser (supports log format config)
* Logger model
* Access log dashboard
Bug patch
* Fixed feed sync issue due to time range filtering when querying MISP attributes.
Added parsers, log schemas, dashboards.
* High performance log parser
* Log Schemas
* BLUEMAX NGF HA Status
* BLUEMAX NGF HA Traffic Statistics
* BLUEMAX NGF Interface Statistics
* BLUEMAX NGF NAT Rule Statistics
* BLUEMAX NGF NAT Traffic Statistics
* BLUEMAX NGF Performance
* BLUEMAX NGF Rule Statistics
* BLUEMAX NGF Traffic Statistics
* Traffic, Performance, HA dashboards
First release
* Provides a parser, logger model, and dashboard