remg427 / misp42splunk

A Splunk app to use MISP in background

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Mispgetioc - missing object attribute fields in the results

ykorkmaz opened this issue · comments

commented

Hi,

I realized that not all fields which are part of an object attribute are displayed in result set in Splunk. I am especially looking for "object_relation" field which is part of the json object returned but missing in the results shown in Splunk.

Is there a way to include all fields of an attribute object in the results?

Best regards,
ya.ko

commented