Stay organized with collections
Save and categorize content based on your preferences.
Change log for NETFLOW_OTEL
Date
Changes
2025-04-23
Enhancement:
- event.idm.read_only_udm.additional.fields: Removed mapping of `flow.io.bytes` from `event.idm.read_only_udm.additional.fields` UDM field.
- event.idm.read_only_udm.network.sent_bytes: Mapped `flow.io.bytes` raw log field with `event.idm.read_only_udm.network.sent_bytes` UDM field.
2025-04-11
Enhancement:
- Newly created parser.
- 'event.idm.read_only_udm.principal.ip' and 'event.idm.read_only_udm.principal.asset.ip' : Newly mapped `source.address` raw log field with `event.idm.read_only_udm.principal.ip` and 'principal.asset.ip' UDM field.
- 'event.idm.read_only_udm.principal.port': Newly mapped `source.port` raw log field with `event.idm.read_only_udm.principal.port` UDM field
- 'event.idm.read_only_udm.target.port': Newly mapped `destination.port` raw log field with `event.idm.read_only_udm.target.port` UDM field
- 'event.idm.read_only_udm.network.ip_protocol': Newly mapped `network.transport` raw log field with `event.idm.read_only_udm.network.ip_protocol` UDM field
- 'event.idm.read_only_udm.security_result.detection_fields': Newly mapped `network.type` , 'flow.io.bytes' , 'flow.io.packets' , 'flow.start' , 'flow.time_received' and 'flow.end' raw log field with `event.idm.read_only_udm.security_result.detection_fields` UDM field
- 'event.idm.read_only_udm.network.session_id': Newly mapped `flow.sequence_num` raw log field with `event.idm.read_only_udm.network.session_id` UDM field
- 'event.idm.read_only_udm.observer.ip': Newly mapped `flow.sampler_address` raw log field with `event.idm.read_only_udm.observer.ip` UDM field
- 'event.idm.read_only_udm.metadata.product_event_type': Newly mapped `flow.type` raw log field with `event.idm.read_only_udm.metadata.product_event_type` UDM field
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-29 UTC."],[],[],null,["Change log for NETFLOW_OTEL\n\n| Date | Changes |\n|------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|\n| 2025-04-23 | Enhancement: - event.idm.read_only_udm.additional.fields: Removed mapping of \\`flow.io.bytes\\` from \\`event.idm.read_only_udm.additional.fields\\` UDM field. - event.idm.read_only_udm.network.sent_bytes: Mapped \\`flow.io.bytes\\` raw log field with \\`event.idm.read_only_udm.network.sent_bytes\\` UDM field. |\n| 2025-04-11 | Enhancement: - Newly created parser. - 'event.idm.read_only_udm.principal.ip' and 'event.idm.read_only_udm.principal.asset.ip' : Newly mapped \\`source.address\\` raw log field with \\`event.idm.read_only_udm.principal.ip\\` and 'principal.asset.ip' UDM field. - 'event.idm.read_only_udm.principal.port': Newly mapped \\`source.port\\` raw log field with \\`event.idm.read_only_udm.principal.port\\` UDM field - 'event.idm.read_only_udm.target.port': Newly mapped \\`destination.port\\` raw log field with \\`event.idm.read_only_udm.target.port\\` UDM field - 'event.idm.read_only_udm.network.ip_protocol': Newly mapped \\`network.transport\\` raw log field with \\`event.idm.read_only_udm.network.ip_protocol\\` UDM field - 'event.idm.read_only_udm.security_result.detection_fields': Newly mapped \\`network.type\\` , 'flow.io.bytes' , 'flow.io.packets' , 'flow.start' , 'flow.time_received' and 'flow.end' raw log field with \\`event.idm.read_only_udm.security_result.detection_fields\\` UDM field - 'event.idm.read_only_udm.network.session_id': Newly mapped \\`flow.sequence_num\\` raw log field with \\`event.idm.read_only_udm.network.session_id\\` UDM field - 'event.idm.read_only_udm.observer.ip': Newly mapped \\`flow.sampler_address\\` raw log field with \\`event.idm.read_only_udm.observer.ip\\` UDM field - 'event.idm.read_only_udm.metadata.product_event_type': Newly mapped \\`flow.type\\` raw log field with \\`event.idm.read_only_udm.metadata.product_event_type\\` UDM field |"]]