Skip to content

Releases: ocsf/splunk

Release candidate 5

21 Mar 22:54
Compare
Choose a tag to compare
Release candidate 5 Pre-release
Pre-release

The RC5 is based off the OCSF schema 1.0.0-rc.2 with the following additions from OCSF schema RC3:

  1. A copy of the https://schema.ocsf.io/1.0.6-alpha/classes/network_file_activity class in the splunk extension
  2. Adding is_new_logon attribute to the authentication to match the authentication class in the RC3.