Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Added new activity
Listen
to Network Activity
and relax requireme…
…nt of `src_endpoint` (ocsf#1147) This adds support for representing a network endpoint listening for new network connections on a network. The listening network endpoint will always be the `dst_endpoint`, and there is no `src_endpoint` because no network connection has been established yet. Therefore `src_endpoint` is changed from required to recommended. The rational behind using `Network Activity` is that when a data consumer asks their data set for `Network Activity`, they will probably be interested in things that are listening on the network even if there wasn't a connection established yet. This is in contrast to needing to ask the data set for a different event type. Signed-off-by: Mitchell Wasson <[email protected]> Co-authored-by: Rajas <[email protected]>
- Loading branch information