Catch All (Syslog - Trend Micro Deep Discovery Analyzer CEF)
Vendor Documentation
https://ohc.blob.core.windows.net/o-help/manual/634d3f01-92d7-40e4-ad6a-9df16960e7bd/ddan_7.6_sg.pdf |
Classification
Rule Name | Rule Type | Common Event | Classification |
|---|---|---|---|
Catch All | Base Rule | General Information | Information |
General Information | Sub Rule | General Information | Information |
General Error | Sub Rule | General Error | Error |
General Critical | Sub Rule | General Critical | Critical |
General Warning | Sub Rule | General Warning | Warning |
General Alert | Sub Rule | General Alert | Critical |
General Debug | Sub Rule | General Debug Message | Information |
General Emergency | Sub Rule | General Emergency Log Message | Critical |
General Notice | Sub Rule | General Notice | Information |
Mapping with LogRhythm Schema
Device Key in Log Message | LogRhythm Schema | Data Type | Schema Description |
|---|---|---|---|
Header: Severity | <tag1> | Text/String | N/A |