Skip to content

Releases: criblpacks/cribl-windows-events

v1.0.4

30 Jan 19:34
e94da46

Choose a tag to compare

No updates, final release. See Pack README for new Cribl Classic and XML Packs that are compatible with the Windows TA.

Classic Events Pipeline Update

05 Apr 14:58
1d62810

Choose a tag to compare

Fixes performance issue with the Mask when using internal fields. The Classic Events pipeline is no longer using __raw with the Mask function.

Minor cleanup

21 Mar 11:33
aa205e5

Choose a tag to compare

v1.0.2

Minor cleanup

Minor tweaks to NXLog Pipeline

14 Mar 17:48
b41ef72

Choose a tag to compare

Added support for NXLog Windows Events and Perfmon

09 Mar 15:28
fa020d6

Choose a tag to compare

Added support for:

  • Windows events that come in from NXLog
  • Perfmon

Updated XML pipelines to support nesting

09 Feb 16:42
93fdde1

Choose a tag to compare

Minor tweaks to classic event pipeline
Replaced Windows XML pipeline

Added support for embedded code in classic events

31 Jan 18:10
3d2e8ec

Choose a tag to compare

What's Changed

Full Changelog: v0.9.1...v0.9.2

Added Support for Embedded XML in Classic Events

27 Jan 14:00
1a5de0e

Choose a tag to compare

Added new Route/Pipeline for handling Classic Events with embedded XML

What's Changed

Full Changelog: v0.9.0...v0.9.1

Rewrite of Windows Classic Events Pipeline and Added DNS

27 Jan 12:54
14fc73d

Choose a tag to compare

What's Changed

Full Changelog: v0.5.5...v0.9.0

v0.5.5 - Keep cribl_breaker

19 Aug 17:47
b1e7582

Choose a tag to compare

  • Added Field Filter Expression to Classic Pipeline final Parser to optionally remove values of '-'
  • Updated Eval to keep cribl_breaker from drop all fields
  • Updated sample data