mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
Ran enrichment tool to update all DataModel and required_fields parts of yml files with most recent and correct codebase. More specifically, ran this tool after correcting some searches with only included a Model, not Model.Submodel declaration in their search.
This commit is contained in:
@@ -61,8 +61,7 @@ tags:
|
||||
- Splunk Cloud
|
||||
required_fields:
|
||||
- _time
|
||||
- eventName
|
||||
- userAgent
|
||||
- errorCode
|
||||
- eventName
|
||||
risk_score: 63
|
||||
security_domain: cloud
|
||||
|
||||
Reference in New Issue
Block a user