Package proofpoint/tap-siem-api Release Notes

Package proofpoint/tap-siem-api Release Notes Version 1.1.0
  • Improves the field extraction and performance.

  • Maps the clickTime field to @timestamp instead of threatTime field for ClicksBlocked and ClicksPermitted events.

  • Sets the event.category, event.type and the event.outcome fields based on the source data.

  • Adds observer.type field.

Package proofpoint/tap-siem-api Release Notes Version 1.0.0
  • Updates the parsers to be compliant with LogScale Parsing Standard.

  • Renames the parsers.

  • Removes dashboards from the package. To keep those, stay on the old version of the package.

  • Sets following tags: Cps.version, Vendor, ecs.version, event.dataset, event.kind, event.module, event.outcome, observer.type