Universal Normalizer
Universal Normalizer enables you to normalize structured logs, extract their fields and rename those fields to comply with Logpoint taxonomy and add labels. It provides a generic interface to create, install and update a custom compiled normalizer for JSON, CEF, LEEF, CSV, XML and Key-Value pair log types.
Bug Fixes
PLUG-16677
Universal Normalizer displayed a norm_id even when normalization failed, creating incorrect results.
PLUG-16888
When using a custom JSON compiled normalizer, special characters were incorrectly parsed.
Past Releases
Universal Normalizer v5.9.0 ▾
Enhancement
PLUG-15943
Universal Normalizer v5.9.0 now supports post-processing nested JSON data structures for correct log normalization.
Universal Normalizer v5.8.0 ▾
Bug Fix
PLUG-13122
The regex used as a Log identifier is now fully sanitized, preventing any possibility of Remote Code Execution.
Universal Normalizer v5.7.0 ▾
Enhancement
PLUG-13122
The regex used as a Log identifier is now fully sanitized, preventing any possibility of Remote Code Execution.
Once you update Universal Normalizer to v5.7.0, you need to go to Settings > Configuration > Universal Normalizer and update your normalizers.
Comments
Article is closed for comments.