Skip to content

azure_vuln eventtype search is broken #19

@ashurack

Description

@ashurack

Typo in the azure_vuln stanza. Should be brought into one line.

Invalid key in stanza [azure_vuln] in /opt/splunk/etc/apps/TA-MS-AAD/default/eventtypes.conf, line 40: properties.additionalData.cve{}.title (value: *)).

https://github.com/splunk/splunk-add-on-microsoft-azure/blob/4.0.2/package/default/eventtypes.conf#L38-L40

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't workingstatus: work in progressIssues/PRs - Work in Progress (WIP)

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions