https://splunkbase.splunk.com/app/2934 is it compatible with Splunk enterprise & ES 10.0.4 even though it's archived. Not seeing the following fields in Data Model Network_Resolution Fields: DNS.src DNS.src_category DNS.message DNS.reply_code DNS.record_type DNS.query
... View more