Change log for IBM_WEBSPHERE_APP_SERVER
| Date | Changes |
|---|---|
| 2025-10-03 | Enhancement:
- `event.idm.read_only_udm.intermediary.hostname`: Newly mapped `inter_host` raw log field to `event.idm.read_only_udm.intermediary.hostname` UDM field. - `event.idm.read_only_udm.intermediary.application`: Newly mapped `inter_app` raw log field to `event.idm.read_only_udm.intermediary.application` UDM field. - `event.idm.read_only_udm.principal.process.pid`: Newly mapped `prin_pid` raw log field to `event.idm.read_only_udm.principal.process.pid` UDM field. - `event.idm.read_only_udm.security_result.severity`: Newly mapped `level` raw log field to `event.idm.read_only_udm.security_result.severity` UDM field. - `event.idm.read_only_udm.security_result.severity_details`: Newly mapped `level` raw log field to `event.idm.read_only_udm.security_result.severity_details` UDM field. - `event.idm.read_only_udm.network.session_id`: Newly mapped `sess_id` raw log field to `event.idm.read_only_udm.network.session_id` UDM field. - `event.idm.read_only_udm.additional.fields`: Newly mapped `ThreadId`, `logSource`, `app_specific_tag`, `sectok`, `FINSESSION_ID` raw log fields to `event.idm.read_only_udm.additional.fields` UDM field. - Added conditional checks to map `product`, `vendor`, and `file_name` to `event.idm.read_only_udm.metadata.product_name`, `event.idm.read_only_udm.metadata.vendor_name`, and `event.idm.read_only_udm.target.file.full_path` only if the raw fields are not empty. - Added grok pattern in order to parse new pattern of syslog logs. |