Skip to content

Commit

Permalink
Update changelog for newer Windows TA
Browse files Browse the repository at this point in the history
  • Loading branch information
Karneades authored Feb 13, 2020
1 parent 972c806 commit baa28d6
Showing 1 changed file with 6 additions and 1 deletion.
7 changes: 6 additions & 1 deletion ta-microsoft-powershell/README.md
Original file line number Diff line number Diff line change
@@ -1,11 +1,16 @@
# TA-Microsoft-PowerShell

* Author: Swisscom CSIRT, Swisscom (Schweiz) AG
* Sourcetype: XmlWinEventLog:Microsoft-Windows-PowerShell/Operational
* Source: XmlWinEventLog:Microsoft-Windows-PowerShell/Operational
* Has index-time ops: false

# Update History

## 0.2.0 - 2020-02-13

* Update to work with the new Splunk_TA_windows v5 and onwards - https://docs.splunk.com/Documentation/WindowsAddOn/5.0.1/User/Upgrade#Upgrade_from_version_4.8.4_to_version_5.0.1
* All searches,reports and dashboards using `sourcetype="XmlWinEventLog:Microsoft-Windows-PowerShell/Operational"` need to use `source="XmlWinEventLog:Microsoft-Windows-PowerShell/Operational"` instead, due to the upgrade to Splunk_TA_windows v5

## 0.1.0 - 2019-03-01
* Add initial PowerShell event log field extraction
* Tested with PowerShell 5.1
Expand Down

0 comments on commit baa28d6

Please sign in to comment.