diff --git a/blog-cse/2025-10-28-content.md b/blog-cse/2025-10-28-content.md new file mode 100644 index 0000000000..f03716654e --- /dev/null +++ b/blog-cse/2025-10-28-content.md @@ -0,0 +1,34 @@ +--- +title: October 28, 2025 - Content Release +image: https://assets-www.sumologic.com/company-logos/_800x418_crop_center-center_82_none/SumoLogic_Preview_600x600.jpg?mtime=1617040082 +keywords: + - log mappers + - parsers +hide_table_of_contents: true +--- + +This content release includes: + - New mappers for Crowdstrike Falcon events. + - Updates to existing mappers for Crowdstrike Falcon, F5, and Okta events to support additional fields and events. + - Updates to F5 Networks and Okta SSO parsers. + +Changes are enumerated below. + +### Log Mappers +- [New] CrowdStrike Falcon Host API IdpDetectionSummaryEvent +- [New] CrowdStrike Falcon Identity Protection +- [Updated] CrowdStrike UserActivity Logs +- [Updated] F5 Authentication Catch All +- [Updated] F5 HTTPd Audit - Custom Parser +- [Updated] F5 Session and adfs proxy - Custom Parser +- [Updated] Okta Authentication - auth_via_AD_agent +- [Updated] Okta Authentication - auth_via_mfa +- [Updated] Okta Authentication - auth_via_radius +- [Updated] Okta Authentication - sso +- [Updated] Okta Authentication Events +- [Updated] Okta Catch All +- [Updated] Okta Security Threat Events + +### Parsers +- [Updated] /Parsers/System/F5/F5 Syslog +- [Updated] /Parsers/System/Okta/Okta \ No newline at end of file