parser extension for Semperis logs

Hello to 

I want to build a Parser extension for Semperis logs,

This is the log:

<110>Mar 20 15:21:46 sem-adsm.mac.org.il Semperis.DSP [AdChanges@51802] [ForestId] 2235788be69a48a2b189a544112eebab [ChangeId] 349228170 [PartitionNamingContext] DC=mac,DC=org,DC=il [DistinguishedName] CN=IDMTest,OU=Left2024,OU=LeftUsers,DC=mac,DC=org,DC=il [ClassName] user [AttributeName] userAccountControl [ObjectModificationType] ModifyObject [AttributeModificationType] Modify [LinkedValueDN] [ValidUntil] 2100-01-01T00:00:00.000Z [OriginatingServer] MACDCPRD01.mac.org.il [OriginatingTime] 2025-03-20T12:21:59.000Z [OriginatingUsers] MAC-AD\sandach_r; [OriginatingUserWorkstations] [StringValueFrom] AccountDisabled, PasswordNotRequired, NormalAccount, PasswordDoesNotExpire [StringValueTo] PasswordNotRequired, NormalAccount

 

I want to add the values:

  • StringValueFrom
  • StringValueTo

can you help me with that?

Thank you,

 

0 1 125
1 REPLY 1

Hello @agar_s ,

Please find the parser knowledge document for your reference.
https://docs.cyderes.cloud/parser-knowledge-base/semperis_dsp/ 

Thanks,
Sudeep Singh