This release contains a new set of mappers related to AWS Cloudtrail Lambda functions, permissions, and sources and how changes related to them can align across our schema. In addition to that we have a correction to the parsing rerouted path 'System' in the parser path for Snort-like formatted messages.
Log Mappers
- [New] CloudTrail - lambda.amazonaws.com - AddLayerVersionPermission
- [New] CloudTrail - lambda.amazonaws.com - AddPermission
- [New] CloudTrail - lambda.amazonaws.com - CreateEventSourceMapping
- [New] CloudTrail - lambda.amazonaws.com - CreateFunction
- [New] CloudTrail - lambda.amazonaws.com - CreateFunctionUrlConfig
- [New] CloudTrail - lambda.amazonaws.com - DeleteEventSourceMapping
- [New] CloudTrail - lambda.amazonaws.com - DeleteFunction
- [New] CloudTrail - lambda.amazonaws.com - DeleteFunctionUrlConfig
- [New] CloudTrail - lambda.amazonaws.com - GetEventSourceMapping
- [New] CloudTrail - lambda.amazonaws.com - GetFunction
- [New] CloudTrail - lambda.amazonaws.com - GetFunctionConfiguration
- [New] CloudTrail - lambda.amazonaws.com - GetFunctionUrlConfig
- [New] CloudTrail - lambda.amazonaws.com - GetLayerVersionPolicy
- [New] CloudTrail - lambda.amazonaws.com - GetPolicy
- [New] CloudTrail - lambda.amazonaws.com - ListEventSourceMappings
- [New] CloudTrail - lambda.amazonaws.com - ListFunctionUrlConfigs
- [New] CloudTrail - lambda.amazonaws.com - ListFunctions
- [New] CloudTrail - lambda.amazonaws.com - PublishLayerVersion
- [New] CloudTrail - lambda.amazonaws.com - RemovePermission
- [New] CloudTrail - lambda.amazonaws.com - UpdateEventSourceMapping
- [New] CloudTrail - lambda.amazonaws.com - UpdateFunctionCode
- [New] CloudTrail - lambda.amazonaws.com - UpdateFunctionConfiguration
- [New] CloudTrail - lambda.amazonaws.com - UpdateFunctionUrlConfig
Parsers
- [Updated] /Parsers/System/Suricata/Suricata Syslog