Skip to content

panw using invalid field values according to ECS #3049

@jsoriano

Description

@jsoriano
[0] parsing field value failed: field "event.category"'s value "network_traffic" is not one of the allowed values (authentication, configuration, database, driver, file, host, iam, intrusion_detection, malware, network, package, process, registry, session, threat, web)
[0] parsing field value failed: field "event.category"'s value "security_threat" is not one of the allowed values (authentication, configuration, database, driver, file, host, iam, intrusion_detection, malware, network, package, process, registry, session, threat, web)

"network_traffic" => "network""security_threat" => "intrussion_detection"?

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions