Feed Hit : Process Ingress

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

Feed Hit : Process Ingress

Base Rule

Watchlist Hit

Activity

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

feed_name

<sender>

Text/String

group

<group>

Text/String

hostname

<dname>

Text/String

md5/ioc_value

<objectname>

<hash>

Text/String