DateTime

Classification

Rule Name

Rule Type

Common Event

Classification

DateTime

Base Rule

Configuration Modified : System

Configuration

System Time Synchronized

Sub Rule

Configuration Modified : System

Configuration

Lost Synchronization To External Source

Sub Rule

Lost Synchronization To External Source

Warning

Time Synchronized To External Source

Sub Rule

Configuration Modified : System

Configuration

Synchronization To External Source Failed

Sub Rule

Synchronization To External Source Failed

Warning

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<vmid>

Text\String

N/A

<severity>

Text\String

N/A

<sip>

IP Address

N/A

<login>

Text\String

N/A

<tag1>

Text\String