Change log for NETFLOW_OTEL
Date | Changes |
---|---|
2025-04-23 | Enhancement:
- event.idm.read_only_udm.additional.fields: Removed mapping of `flow.io.bytes` from `event.idm.read_only_udm.additional.fields` UDM field. - event.idm.read_only_udm.network.sent_bytes: Mapped `flow.io.bytes` raw log field with `event.idm.read_only_udm.network.sent_bytes` UDM field. |
2025-04-11 | Enhancement:
- Newly created parser. - 'event.idm.read_only_udm.principal.ip' and 'event.idm.read_only_udm.principal.asset.ip' : Newly mapped `source.address` raw log field with `event.idm.read_only_udm.principal.ip` and 'principal.asset.ip' UDM field. - 'event.idm.read_only_udm.principal.port': Newly mapped `source.port` raw log field with `event.idm.read_only_udm.principal.port` UDM field - 'event.idm.read_only_udm.target.port': Newly mapped `destination.port` raw log field with `event.idm.read_only_udm.target.port` UDM field - 'event.idm.read_only_udm.network.ip_protocol': Newly mapped `network.transport` raw log field with `event.idm.read_only_udm.network.ip_protocol` UDM field - 'event.idm.read_only_udm.security_result.detection_fields': Newly mapped `network.type` , 'flow.io.bytes' , 'flow.io.packets' , 'flow.start' , 'flow.time_received' and 'flow.end' raw log field with `event.idm.read_only_udm.security_result.detection_fields` UDM field - 'event.idm.read_only_udm.network.session_id': Newly mapped `flow.sequence_num` raw log field with `event.idm.read_only_udm.network.session_id` UDM field - 'event.idm.read_only_udm.observer.ip': Newly mapped `flow.sampler_address` raw log field with `event.idm.read_only_udm.observer.ip` UDM field - 'event.idm.read_only_udm.metadata.product_event_type': Newly mapped `flow.type` raw log field with `event.idm.read_only_udm.metadata.product_event_type` UDM field |