From 4246de12b09074dc8671fc9a27ede2e39a9bc8c1 Mon Sep 17 00:00:00 2001 From: manan-crest Date: Tue, 10 Dec 2024 19:33:43 +0530 Subject: [PATCH] Update: add attribute in date remapper --- .../assets/logs/delinea-privilege-manager.yaml | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/delinea_privilege_manager/assets/logs/delinea-privilege-manager.yaml b/delinea_privilege_manager/assets/logs/delinea-privilege-manager.yaml index 847d6c58bfae0..679dbf7b1e817 100644 --- a/delinea_privilege_manager/assets/logs/delinea-privilege-manager.yaml +++ b/delinea_privilege_manager/assets/logs/delinea-privilege-manager.yaml @@ -316,11 +316,12 @@ pipeline: EventReceivedByServer=%{date("M/d/yyyy h:m:s a"):EventReceivedByServer} %{keyvalue_parsing_rule:} - type: date-remapper - name: Define `EventReceivedByServer`, `FileFirstSeenByServer`, `timestamp` as - the official date of the log + name: Define `EventReceivedByServer`, `EventOccuredOnServer`, + `FileFirstSeenByServer`, `timestamp` as the official date of the log enabled: true sources: - EventReceivedByServer + - EventOccuredOnServer - FileFirstSeenByServer - timestamp - type: category-processor