Hello,
I’ve noticed in the Cisco Umbrella admin dashboard that I have the ability to upgrade the schema version used for the logs written by Umbrella to the Cisco-managed S3 storage. We’re currently on schema version 4 and version 8 is available - descriptions of the schema versions are available at https://docs.umbrella.com/deployment-umbrella/docs/log-formats-and-versioning#log-schema-versions.
Does anyone know if the Rapid7 Event Source for Cisco Umbrella supports the latest v8 schema, or better yet are you using that schema version successfully with IDR?
Thanks!