Change log for AWS_CONFIG
Date | Changes |
---|---|
2025-04-14 | Enhancement:
- Added mappings for numerous fields within `configurationItem.configuration.AWS:Application.Content` to the `event.idm.read_only_udm.additional.fields`. - This includes adding a `for` loop for each of the following keys: - `rpm-libs` - `libcollection` - `ethtool` - `python3-certbot` - `libmnl` - `apr-util-openssl` - `perl-overloading` - `libselinux-utils` - `python-josepy-doc` - `libibverbs` - `fstrm` - `libseccomp` - `python3-pyyaml` - `libattr` - `telnet` - `quota` - `efivar` - `python3-libdnf` - `glibc-all-langpacks` - `keyutils-libs` - `libgcc` - `mod_lua` - `fonts-srpm-macros` - `libkcapi-hmaccalc` - `python3-daemon` - `perl-Encode` - `selinux-policy` - `fonts-filesystem` - `python3-pyrsistent` - `bind-license` - `perl-IPC-Open3` - `pcre2-syntax` - `python-chevron` - `perl-Getopt-Long` - `at` - `libunistring` - `python3-docutils` - `newrelic-infra` - `python3-requests` - `findutils` - `bc` - `glibc-common` - `grub2-tools` - `ntsysv` - `gmp` - `python-srpm-macros` - `python3-attrs` - `sed` - `python3-acme` - `python3-lockfile` - `libref_array` - `vim-minimal` - `libcom_err` - `c-ares` - `perl-Pod-Escapes` - `python3-chardet` - `kbd-misc` - `pkgconf-m4` - `httpd-filesystem` - `systemd` - `gssproxy` - `libpsl` - `kernel` - `words` - `perl-Carp` - `dnf-utils` - `libassuan` - `libxcrypt` - `rsync` - `chrony` - `bash-completion` - `popt` - `libsepol` - `gnupg2-minimal` - `libpcap` - `acl` - `python3-distro` - `python3-pyparsing` - `util-linux` - `perl-Term-Cap` - `efivar-libs` - `perl-Text-Tabs+Wrap` - `pigz` - `shadow-utils` - `util-linux-core` - `pam` - `ed` - `package-notes-srpm-macros` - `info` - `which` - `libpkgconf` - `sssd-common` - `systemd-resolved` - `containerd` - `httpd-tools` - `cryptsetup` - `grub2-tools-minimal` - `rust-srpm-macros` - `perl-Class-Struct` - `python3-netifaces` - `xz-libs` - `psmisc` - `gperftools-libs` - `perl-Exporter` - `yum` - `libsss_certmap` - `awscli-2` - `fluent-bit` - `libtirpc` - `nss-sysinit` - `krb5-libs` - `python3-libselinux` - `rpcbind` - `libkcapi` - `libblkid` - `python3-jinja2` - `mod_http2` - `elfutils-default-yama-scope` - `filesystem` - `cloud-utils-growpart` - `binutils` - `setup` - `libmetalink` - `openssl-libs` - `pciutils` - `perl-vars` - `python3-certbot-nginx` - `amazon-linux-repo-s3` - `libsolv` - `p11-kit` - `openldap` - `perl-MIME-Base64` - `hwdata` - `vim-enhanced` - `libtdb` - `bzip2` - `dbus-libs` - `libsss_idmap` - `python3-pyOpenSSL` - `sqlite-libs` - `nss-softokn` - `httpd-core` - `perl-subs` - `update-motd` - `dnf` - `gawk` - `perl-Symbol` - `cryptsetup-libs` - `hunspell-en-GB` - `httpd` - `libgpg-error` - `python3-jsonpatch` - `tcsh` - `inih` - `psacct` - `dnf-plugin-support-info` - `rpm-sign-libs` - `nginx-core` - `python3-ruamel-yaml-clib` - `glibc-gconv-extra` - `groff-base` - `amazon-linux-sb-keys` - `crontabs` - `libffi` - `jq` - `diffutils` - `python3-prompt-toolkit` - `dracut-config-ec2` - `grubby` - `libpath_utils` - `libreport-filesystem` - `file` - `systemd-libs` - `boost-thread` - `net-tools` - `libevent` - `perl-Getopt-Std` - `logrotate` - `xxd` - `libpq` - `perl-interpreter` - `gzip` - `libcap` - `ec2-instance-connect` - `libgomp` - `python3-urllib3` - `inspectorssmplugin` - `libtevent` - `iptables-nft` - `iproute` - `elfutils-debuginfod-client` - `libss` - `libsmartcols` - `screen` - `libcomps` - `python3-libcomps` - `sssd-kcm` - `kernel-livepatch-repo-s3` - `libconfig` - `mpfr` - `vim-data` - `sssd-client` - `libacl` - `nginx` - `python3-ply` - `perl-constant` - `amazon-rpm-config` - `perl-Text-ParseWords` - `less` - `lsof` - `python3-pytz` - `perl-Term-ANSIColor` - `libbasicobjects` - `pkgconf-pkg-config` - `python3-dnf-plugins-core` - `xxhash-libs` - `libuv` - `jansson` - `python3-configargparse` - `e2fsprogs` - `perl-SelectSaver` - `libverto-libev` - `python3-pysocks` - `perl-POSIX` - `attr` - `libtalloc` - `nfs-utils` - `libgcrypt` - `lm_sensors-libs` - `hunspell-filesystem` - `perl-libs` - `libfdisk` - `perl-Storable` - `kbd` - `libcgroup` - `boost-filesystem` - `python3-libs` - `libstdc++` - `rpm` - `cyrus-sasl-lib` - `perl-File-stat` - `dosfstools` - `ocaml-srpm-macros` - `openssh-server` - `python3-pyserial` - `libidn2` - `libini_config` - `perl-overload` - `chkconfig` - `rng-tools` - `python3-ruamel-yaml` - `libstoragemgmt` - `python3-colorama` - `hostname` - `zram-generator` - `man-pages` - `gettext` - `systemd-networkd` - `openssh-clients` - `dnf-data` - `systemd-udev` - `amazon-ssm-agent` - `apr` - `dbus-broker` - `libuuid` - `protobuf-c` - `passwd` - `efi-srpm-macros` - `libdnf` - `hunspell` - `libuser` - `alternatives` - `perl-Errno` - `zram-generator-defaults` - `nss-util` - `systemd-pam` - `libmodulemd` - `dwz` - `lmdb-libs` - `ghc-srpm-macros` - `python3-hawkey` - `hunspell-en` - `perl-Fcntl` - `mod_ssl` - `audit` - `python3-rpm` - `libdhash` - `python3-jmespath` - `python3-cryptography` - `perl-Scalar-List-Utils` - `man-db` - `sudo` - `rpm-plugin-systemd-inhibit` - `basesystem` - `perl-mro` - `rootfiles` - `slang` - `strace` - `libmount` - `python3-setuptools` - `libnfsidmap` - `cpio` - `vim-common` - `selinux-policy-targeted` - `nginx-mimetypes` - `libcurl-minimal` - `crypto-policies` - `libzstd` - `kmod` - `nano` - `python3-dnf` - `ncurses` - `python3-libstoragemgmt` - `libcap-ng` - `libselinux` - `go-srpm-macros` - `dyninst` - `e2fsprogs-libs` - `rpm-plugin-selinux` - `librepo` - `python3-policycoreutils` - `perl-Pod-Usage` - `libnfnetlink` - `keyutils` - `oniguruma` - `libutempter` - `libverto` - `libunwind` - `cloud-init-cfg-ec2` - `python3-pyrfc3339` - `nspr` - `iptables-libs` - `perl-PathTools` - `libpipeline` - `efi-filesystem` - `glibc` - `libargon2` - `libsss_nss_idmap` - `perl-Pod-Simple` - `python3-jsonschema` - `aws-cfn-bootstrap` - `xfsdump` - `boost-system` - `tcpdump` - `docker` - `sysstat` - `cracklib-dicts` - `coreutils` - `curl-minimal` - `perl-Socket` - `expat` - `dracut` - `system-release` - `fuse-libs` - `python3-pycparser` - `python3-pip-wheel` - `readline` - `libaio` - `grep` - `newt` - `libsemanage` - `glib2` - `libxml2` - `perl-HTTP-Tiny` - `perl-parent` - `grub2-pc-modules` - `openssh` - `traceroute` - `xfsprogs` - `libnl3` - `bind-libs` - `json-c` - `libev` - `pcre2` - `cloud-init` - `pkgconf` - `generic-logos-httpd` - `iputils` - `libdb` - `python3-jsonpointer` - `tzdata` - `cyrus-sasl-plain` - `dnf-plugin-release-notification` - `libedit` - `sysctl-defaults` - `zlib` - `libnftnl` - `amazon-chrony-config` - `python3-setuptools-wheel` - `libmaxminddb` - `libnetfilter_conntrack` - 'event.idm.read_only_udm.additional.fields': Newly mapped `configurationItem.supplementaryConfiguration.instanceStatus` , 'configurationItem.configurationStateId' , 'configurationItem.ARN' and 'configurationItem.configuration.AWS:Network.Content' to `event.idm.read_only_udm.additional.fields`. - 'event.idm.read_only_udm.metadata.product_version': Newly mapped `configurationItem.configurationItemVersion` raw log field with `event.idm.read_only_udm.metadata.product_version` UDM field. - 'event.idm.read_only_udm.metadata.description': Newly mapped `messageType` raw log field with `event.idm.read_only_udm.metadata.description` UDM field. |
2024-06-09 | Enhancement:
- Added "on_error" to "configItem.configuration.configRuleList" fields before mapping it to UDM. |
2024-02-22 | Enhancement:
- Mapped "configurationItem.relationships[n].resourceId", "configurationItem.relationships[n].resourceType" and "configurationItem.relationships[n].name" to "additional.fields". |
2022-05-27 | Enhancement - Modified the value stored in "metadata.product_name" to 'AWS Config'.
|
2022-03-30 | Enhancement-Corrected mapping for relationship.resourceId to parse for all log types and improve parsing percentage.
|