Event : Wireless
Vendor Documentation
https://www.fortinet.com/products.html https://docs.fortinet.com/document/fortigate/6.0.6/fortios-log-message-reference/524940/introduction |
Classification
Rule Name | Rule Type | Classification | Common Event |
---|---|---|---|
Event : Wireless | Base Rule | Other Operations | General Wireless Management Message |
Wireless CLB Deny | Sub Rule | Information | General Load Balancing Message |
Wireless CLB Retry | Sub Rule | Information | General Load Balancing Message |
Wireless STA Locate | Sub Rule | Warning | Interference Detected For Wireless Station |
Wireless Rogue Detect | Sub Rule | Warning | General Wireless Channel Warning |
Wireless Rogue Detect Chg | Sub Rule | Warning | General Wireless Channel Warning |
Wireless Sys AC CFG Loaded | Sub Rule | Information | Configuration Information |
Wireless STA Leave WTP | Sub Rule | Other Operations | Received Disconnect |
Wireless WTPR DARRP Chan | Sub Rule | Information | Wireless Physical AP Activity |
Wireless WTPR OPER Chan | Sub Rule | Information | Wireless Physical AP Activity |
Wireless WTPR Cfg Txpower | Sub Rule | Information | Wireless Physical AP Activity |
Wireless WTPR OPER Txpower | Sub Rule | Information | Wireless Physical AP Activity |
Wireless Sys AC DARRP Start | Sub Rule | Information | Wireless Activity |
Wireless Sys AC DARRP Stop | Sub Rule | Information | Wireless Activity |
Wireless STA IP | Sub Rule | Information | IP Address Assigned |
Wireless STA Auth | Sub Rule | Authentication Success | Authentication Activity |
Wireless Rogue Offair | Sub Rule | Other Audit Success | Wireless Disassociation |
Wireless STA Idle | Sub Rule | Information | Idle Timeout |
Mapping with LogRhythm Schema
Device Key in Log Message | LogRhythm Schema | Data Type | Schema Description |
severity | <severity> | Text/String | severity |
logid | <vmid> <tag1> | Number | N/A |
logdesc | <status> | Text/String | N/A |
sn | <serialnumber> | Text/String | N/A |
ap | <object> | Text/String | N/A |
srcip | <sip> | IP Address | N/A |
ssid | <sname> | Text/String | N/A |
stamac | <smac> | MAC Address | N/A |
action | <action> | Text/String | N/A |
reason | <reason> | Text/String | N/A |
msg | <subject> | Text/String | N/A |