Skip to content

Commit

Permalink
Fix dns.query.name
Browse files Browse the repository at this point in the history
  • Loading branch information
defensivedepth committed Nov 2, 2023
1 parent 824f394 commit 2f4df8c
Showing 1 changed file with 1 addition and 2 deletions.
3 changes: 1 addition & 2 deletions so-soctopus/so-soctopus/playbook/securityonion-baseline.yml
Original file line number Diff line number Diff line change
Expand Up @@ -232,8 +232,7 @@ fieldmappings:
username: user.name
uid: user.uid
sid: rule.uuid
query: query
answer: answers
query: dns.query.name
src_ip: destination.ip.keyword
src_port: source.port
dst_ip: destination.ip.keyword
Expand Down

0 comments on commit 2f4df8c

Please sign in to comment.