matanolabs / matano

Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS
https://matano.dev
Apache License 2.0
1.44k stars 97 forks source link

Added matano_alert VRL to convert all ECS field timestamps #136

Closed chrismsnz closed 1 year ago

chrismsnz commented 1 year ago

Pulled all of the timestamp fields from the ECS definition in the repository, and generated VRL to convert to correct timestamp types.