Releases: criblpacks/cribl-windows-events
Releases · criblpacks/cribl-windows-events
v1.0.4
Classic Events Pipeline Update
Fixes performance issue with the Mask when using internal fields. The Classic Events pipeline is no longer using __raw with the Mask function.
Minor cleanup
v1.0.2 Minor cleanup
Minor tweaks to NXLog Pipeline
Full Changelog: v1.0.0...v1.0.1
Added support for NXLog Windows Events and Perfmon
Added support for:
- Windows events that come in from NXLog
- Perfmon
Updated XML pipelines to support nesting
Minor tweaks to classic event pipeline
Replaced Windows XML pipeline
Added support for embedded code in classic events
What's Changed
- Added support for embedded code or scripts by @dmaislin-cribl in #6
Full Changelog: v0.9.1...v0.9.2
Added Support for Embedded XML in Classic Events
Added new Route/Pipeline for handling Classic Events with embedded XML
What's Changed
- Embedded XML message in Classic Events by @dmaislin-cribl in #5
Full Changelog: v0.9.0...v0.9.1
Rewrite of Windows Classic Events Pipeline and Added DNS
What's Changed
- Updated Classic Pipeline and Added DNS Pipeline by @dmaislin-cribl in #4
Full Changelog: v0.5.5...v0.9.0
v0.5.5 - Keep cribl_breaker
- Added Field Filter Expression to Classic Pipeline final Parser to optionally remove values of '-'
- Updated Eval to keep cribl_breaker from drop all fields
- Updated sample data