Recently CS_EDR parser is updated. There were many changes in UDM field mapping. Old field vs new field. Let’s assume that if there are 200 - 500 rules developed for Endpoint category based on CS_EDR logs. How can we identify which rules got impacted and what will be the new rule logic as per the new parser configuration
Login to the community
Login with SSO
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
