We've reorganized our documentation navigation structure to align directly with your operational workflows. See the release notes and the walkthrough video for more information.
Stay organized with collections
Save and categorize content based on your preferences.
Change log for NETSCOUT_OCI
Date
Changes
2024-02-21
Enhancement:
- Added support for new version of Syslog CEF logs.
- Mapped "url" to "target.url".
- Mapped "app" to "target.application".
- When "src_iporhost" is a valid IP, then mapped it to "principal.ip" or else mapped it to "principal.hostname".
- Mapped "mitreTactic", "mitreTechnique", "srcCount", "dstCount", "srcHostGroupCount", "dstHostGroupCount", "interfaceCount", "violationCount", "dstHostGroup", and "srcHostGroup" to "security_result.detection_fields".
- Removed "desc" mapping to "security_result.description" as it is already being mapped to "metadata.description".
- Mapped "iocDescription" to "security_result.description".
- Mapped "Category" to "security_result.category_details".
- Mapped "Policy" and "Classification" to "additional.fields".
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2026-07-26 UTC."],[],[]]