Administrator Configuration

Vendor Documentation

Classification

Rule Name

Rule Type

Classification

Common Event

Administrator Configuration

Base Rule

Configuration

Configuration Modified : System

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<vmid>

Number

N/A

<dip>

Ip Address

N/A

<domain>

Text/String

N/A

<login>

Text/String

N/A

<object>

Text/String

N/A

<tag1>

Text/String