|
| 1 | +--- |
| 2 | +title: August 15, 2025 - Content Release |
| 3 | +image: https://help.sumologic.com/img/reuse/rss-image.jpg |
| 4 | +keywords: |
| 5 | + - log mappers |
| 6 | + - parsers |
| 7 | +hide_table_of_contents: true |
| 8 | +--- |
| 9 | + |
| 10 | +This content release includes: |
| 11 | + - New product support for Vectra AI. |
| 12 | + - Updated parsers and log mappers for Azure Event Hub, Barracuda CloudGen Firewall, Microsoft IIS, and Surepass. |
| 13 | + - Updated Surepass to the correct vendor name. |
| 14 | + |
| 15 | +Changes are enumerated below. |
| 16 | + |
| 17 | +### Log Mappers |
| 18 | +- [New] Vectra AI Catch All |
| 19 | +- [New] Vectra AI User Login |
| 20 | +- [Updated] Azure Event Hub - Windows Defender Logs |
| 21 | + - Updated field mappings to include new fields. |
| 22 | +- [Updated] Barracuda CloudGen Firewall Activity |
| 23 | + - Updated `event_id` criteria to handle abridged event types in some logs. |
| 24 | +- [Updated] Microsoft IIS Parser - Catch All |
| 25 | + - Updated to support `http_url` and downstream enrichment. |
| 26 | +- [Updated] Surepass Authentication |
| 27 | +- [Updated] Surepass Catch All |
| 28 | +- [Updated] Surepass Network Event |
| 29 | + |
| 30 | +### Parsers |
| 31 | +- [New] /Parsers/System/Vectra/Vectra AI |
| 32 | +- [Updated] /Parsers/System/Barracuda/Barracuda CloudGen |
| 33 | + - Updated `event_id` criteria to handle abridged event types in some logs and to support additional log formats. |
| 34 | +- [Updated] /Parsers/System/Cylance/Cylance Syslog |
| 35 | + - Updated timestamp parsing. |
| 36 | +- [Updated] /Parsers/System/DocuSign/DocuSign Monitor |
| 37 | + - Updated timestamp parsing. |
| 38 | +- [Updated] /Parsers/System/Microsoft/Microsoft Azure JSON |
| 39 | + - Updated parser to parse additional nested fields. |
| 40 | +- [Updated] /Parsers/System/Microsoft/Microsoft IIS |
| 41 | + - Updated to form `http_url` for downstream enrichment. |
0 commit comments