Change log for siemstress
siemparse
now parses from file or stdin- Example visual rules
- Parse helpers for user-definable extended attributes (json string)
- Example helpers
- Trigger rules with TimeInt of 0 automatically start as oneshot
- Updated magnitude logic
- Default rules output to same table
- siemtrigger table creation bug
- Added
Extended
column to event for extended attributes (JSON string)
- Parsing
- Query module/CLI query tool
- Trigger module/tool
- Config file