Container Manager Events

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

Container Manager Events

Base Rule

General Information Log Message

Information

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

Schema Description

Event ID

<vmid>

Number

Event ID 11801, 11802, 11803

Severity

<severity>

Text/String

For All: Information

Message

<subject>
<object>

Text/String

Event ID 11801:
Event reported when container is created

 

<subject>
<object>

Text/String

Event ID 11802:
Event reported when container is removed

 

<subject>
<object>

Text/String

Event ID 11803:
Event reported when container is operational