Event : Wireless
Vendor Documentation
| https://www.fortinet.com/products.html https://docs.fortinet.com/document/fortigate/6.0.6/fortios-log-message-reference/524940/introduction |
Classification
Rule Name | Rule Type | Classification | Common Event |
|---|---|---|---|
| Event : Wireless | Base Rule | Other Operations | General Wireless Management Message |
| Wireless CLB Deny | Sub Rule | Information | General Load Balancing Message |
| Wireless CLB Retry | Sub Rule | Information | General Load Balancing Message |
| Wireless STA Locate | Sub Rule | Warning | Interference Detected For Wireless Station |
| Wireless Rogue Detect | Sub Rule | Warning | General Wireless Channel Warning |
| Wireless Rogue Detect Chg | Sub Rule | Warning | General Wireless Channel Warning |
| Wireless Sys AC CFG Loaded | Sub Rule | Information | Configuration Information |
| Wireless STA Leave WTP | Sub Rule | Other Operations | Received Disconnect |
| Wireless WTPR DARRP Chan | Sub Rule | Information | Wireless Physical AP Activity |
| Wireless WTPR OPER Chan | Sub Rule | Information | Wireless Physical AP Activity |
| Wireless WTPR Cfg Txpower | Sub Rule | Information | Wireless Physical AP Activity |
| Wireless WTPR OPER Txpower | Sub Rule | Information | Wireless Physical AP Activity |
| Wireless Sys AC DARRP Start | Sub Rule | Information | Wireless Activity |
| Wireless Sys AC DARRP Stop | Sub Rule | Information | Wireless Activity |
| Wireless STA IP | Sub Rule | Information | IP Address Assigned |
| Wireless STA Auth | Sub Rule | Authentication Success | Authentication Activity |
| Wireless Rogue Offair | Sub Rule | Other Audit Success | Wireless Disassociation |
| Wireless STA Idle | Sub Rule | Information | Idle Timeout |
Mapping with LogRhythm Schema
| Device Key in Log Message | LogRhythm Schema | Data Type | Schema Description |
| severity | <severity> | Text/String | severity |
| logid | <vmid> <tag1> | Number | N/A |
| logdesc | <status> | Text/String | N/A |
| sn | <serialnumber> | Text/String | N/A |
| ap | <object> | Text/String | N/A |
| srcip | <sip> | IP Address | N/A |
| ssid | <sname> | Text/String | N/A |
| stamac | <smac> | MAC Address | N/A |
| action | <action> | Text/String | N/A |
| reason | <reason> | Text/String | N/A |
| msg | <subject> | Text/String | N/A |