Skip to content

Conversation

@pyth0n1c
Copy link
Contributor

@pyth0n1c pyth0n1c commented Aug 15, 2024

add publish_date field to action.correlationsearch.metadata

Date should be the epoch time of Detection.date @ midnight, UTC. It should be a whole number and expressed as a float.

image

@pyth0n1c
Copy link
Contributor Author

I have confirmed with another Splunker that these changes are correct and will merge them.

@pyth0n1c pyth0n1c merged commit 01d3853 into main Aug 23, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant