Email Attachment

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

Email Attachment

Base Rule

General Email Attachment Message

Information

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

acc

<account>

Text/String

fileName

<objectname>

Text/String

hash

<hash>

Text/String

Size

<size>

Number

IP

<dip>

IP Address

Recipient

<recipient>

Text/String

SenderDomain

<domainorigin>

Text/String

fileExt

<objecttype>

Text/String

sender

<sender>

Text/String