Does Panther offer any way to split 1 incoming event into several separate events?
QUESTION
I have a log source which formats log events as a single "event" which contains an array of JSON objects. I'd like to treat each item in the array as it's own event, similar to the unwind transformation from MongoDB. Does Panther provide any way to do this during ingest?