diff --git a/dashboards/templates/composable/component/evtx.json b/dashboards/templates/composable/component/evtx.json index 829d91d9f..7458ec10c 100644 --- a/dashboards/templates/composable/component/evtx.json +++ b/dashboards/templates/composable/component/evtx.json @@ -41,6 +41,7 @@ "EventData.Category_ID": { "type": "keyword" }, "EventData.Category_Name": { "type": "keyword" }, "EventData.CategoryId": { "type": "keyword" }, + "EventData.ChangeType": { "type": "keyword" }, "EventData.ChannelName": { "type": "keyword" }, "EventData.ClientIP": { "type": "keyword" }, "EventData.ClientMode": { "type": "integer" }, @@ -272,6 +273,7 @@ "EventData.Signature_Version": { "type": "keyword" }, "EventData.SignatureStatus": { "type": "keyword" }, "EventData.Signed": { "type": "keyword" }, + "EventData.Source": { "type": "keyword" }, "EventData.Source_ID": { "type": "keyword" }, "EventData.Source_Name": { "type": "keyword" }, "EventData.SourceAddress": { "type": "keyword" },