ASA-6-80500 : Traffic Flow

Classification

Rule Name

Rule Type

Common Event

Classification

ASA-6-80500 : Traffic Flow

Base Rule

General Network Traffic

Network Traffic

ASA-6-805002 : Flow No Longer Offloaded

Sub Rule

Flow Activity

Network Traffic

ASA-6-805001 : Flow Offloaded

Sub Rule

Flow Activity

Network Traffic

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

80500[12]

<vmid>

Number

N/A

<sip>

Number

N/A

<dip>

Number

N/A

<sport>

Number

N/A

<dport>

Number

N/A

<protname>

Text/String

N/A

<session>

Text/String

N/A

<subject>

Text/String