Endpoint Inventory Schema #84
randomuserid
started this conversation in
General
Replies: 1 comment
-
Here is a field normalization for the inventory events that gets us to 15 fields. Other platforms should be ok with these fields. I have excluded a few fields that are present in the raw log files that are not super important. We can skip them when shipping events to the database from the log files. I excluded endpoint events here b/c we can put these into the systemevents table.
|
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
This is the working schema for the inventory events:
OpenDR Log Fields July 2025:
Autorun Logs
Endpoint Logs
Device Driver Logs
Hotfix Logs
Scheduled Task Logs
Installed Software Logs
Windows Services Logs
Beta Was this translation helpful? Give feedback.
All reactions