Daemon Connections

Classification

Rule Name

Rule Type

Classification

Common Event

Daemon Connections

Base Rule

Information

Daemon Information

Accepting Daemon Connections

Sub Rule

Network Allow

Traffic Allowed by Network Firewall

Rejecting Daemon Connections

Sub Rule

Information

Connection Rejected

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

MAIL

<severity>

Text/String

N/A

<process>

Text/String

N/A

<processid>

Number

N/A

<tag1>

Text/String

connections on daemon

<object>

Text/String

load average

<size>

Number