March 26th, 2026 - Content Release
This content release includes:
- New support for Proofpoint TRAP threat response and Teleport access management.
- Improved Fortinet traffic visibility with additional byte count field mappings across application control, traffic, and web filter logs.
- Enhanced Microsoft Office 365 authentication event normalization for action and cause fields.
- Infoblox DHCP log parsing improvements for broader log format coverage.
Additional changes are enumerated below.
Log Mappers
- [New] Proofpoint TRAP Default Mapping
- [New] Teleport Authentication
- [New] Teleport Default
- [Updated] Fortinet Appctrl1
- [Updated] Fortinet Traffic Logs
- [Updated] Fortinet Traffic1
- [Updated] Fortinet Traffic2
- [Updated] Fortinet Webfilter Logs
- [Updated] Microsoft Office 365 Active Directory Authentication Events
Parsers
- [New] /Parsers/System/Proofpoint/Proofpoint TRAP
- [New] /Parsers/System/Teleport/Teleport
- [Updated] /Parsers/System/Infoblox/Infoblox