General Email Attachment Message
Vendor Documentation
Classification
| Rule Name | Rule Type | Common Event | Classification |
|---|---|---|---|
| General Email Attachment Message | Base Rule | General Email Attachment Message | Information |
Mapping with LogRhythm Schema
| Device Key in Log Message | LogRhythm Schema | Data Type |
|---|---|---|
| acode | <vmid> | Text/String |
| IP | <dip> | Number |
| Dir | <objecttype> | Text/String |
| msgid | <url> | Text/String |
| Subject | <subject> | Text/String |
| Latency | <quantity> | Number |
| Sender | <sender> | Text/String |
| Rcpt | <recipient> | Text/String |
| attsize | <size> | Number |
| tlsver | <protname> | Text/String |
| snt | <bytesout> | Number |
| route | <policy> | Text/String |