Connection Notification

Classification

Rule Name

Rule Type

Common Event

Classification

Connection Notification

Base Rule

Policy Notification

Information

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<sip>

IP Address

N/A

<dip>

IP Address

N/A

<session>

Text\String

N/A

<dname>

Text\String

N/A

<process>

Text\String

N/A

<processid>

Number

N/A

<object>

Text\String

N/A

<objectname>

Text\String

N/A

<subject>

Text\String

N/A

<command>

Text\String