Merge pull request #3256 from markoverholser/master
Fix issue with using `source:` on Zeek `files` log
This commit is contained in:
@@ -404,7 +404,7 @@ fieldmappings:
|
||||
- query
|
||||
- server_name
|
||||
service.response_code: status_code
|
||||
source: id.orig_h
|
||||
# source: id.orig_h
|
||||
SourceAddr: id.orig_h
|
||||
SourceAddress: id.orig_h
|
||||
SourceIP: id.orig_h
|
||||
|
||||
Reference in New Issue
Block a user