ocsf-schema
ocsf-schema copied to clipboard
Additional types for device (endpoint) object
As a mapper, I need to be able to appropriately taxonomize events that come in from Routers, IDS, and IPS devices. The existing type_id
enum within the Device (Endpoint) object do not allow for these types of devices.
AC:
- Router, IDS, and IPS have entries in the Endpoint
type_id
enum