Skip to content

Commit 2ae1190

Browse files
committed
update windows-events filter
1 parent d06848a commit 2ae1190

File tree

1 file changed

+5
-0
lines changed

1 file changed

+5
-0
lines changed

filters/windows/windows-events.yml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -65,6 +65,11 @@ pipeline:
6565
- log.winlog.event_data.PrivilegeList
6666
to: log.winlogEventDataPrivilegeList
6767

68+
- rename:
69+
from:
70+
- log.winlog.event_data.ServiceName
71+
to: log.winlogEventDataServiceName
72+
6873
- rename:
6974
from:
7075
- log.winlog.event_data.SubjectDomainName

0 commit comments

Comments
 (0)