This documentation does not apply to the most recent version of uberAgent. Click here for the latest version.
uberAgent Event Generator Changelog
Version 7.1
Release notes
- Increased .NET version to 7.
- Changed configuration file format to JSON.
Improvements
- Log messages are written to stdout and a log file located in the
%TEMP%
(Windows) or/tmp
(Linux) directory. - The fields
SessionFgBrowserType
,SessionFgBrowserType
andSessionFgBrowserActiveTabHost
of sourcetypeuberAgent:Session:SessionDetail
are now available on macOS, too.
New Sourcetypes
- New sourcetype
uberAgentESA:System:SecurityInventory
with fields:SecurityInventoryCategory
,SecurityInventoryName
,SecurityInventoryScore
,SecurityInventoryRiskScore
,SecurityInventoryResultData
,SecurityInventoryErrorCode
,SecurityInventoryErrorMessage
,SecurityInventoryScope
,SecurityInventoryScopeEntity
.
Updated Sourcetypes
- Sourcetype [B287]:
uberAgent:Process:ProcessStatistics
has new field(s):ProcInputDelayMaxMs
,ProcInputDelaySumMs
andProcInputDelayCount
. - Sourcetype [B287]:
uberAgent:Session:SessionDetail
has new field(s):SessionInputDelayMaxMs
,SessionInputDelaySumMs
andSessionInputDelayCount
. - Sourcetype [B751]:
uberAgent:OnOffTransition:BootDetail2
has new field(s):UserLogonWaitDurationMs
. - Sourcetype [B766]:
uberAgentESA:Process:DnsQuery
has new field(s):DnsRisk52Chars
,DnsRisk27UniqueChars
,DnsRiskEmptyResponse
,DnsRiskTXTRecord
,DnsRiskHighEntropy
,DnsResponseStatus
.