Releases: ocsf/splunk
Releases · ocsf/splunk
Release candidate 5
The RC5 is based off the OCSF schema 1.0.0-rc.2 with the following additions from OCSF schema RC3:
- A copy of the https://schema.ocsf.io/1.0.6-alpha/classes/network_file_activity class in the splunk extension
- Adding
is_new_logon
attribute to the authentication to match the authentication class in the RC3.