Skip to main content
Skip table of contents

Syslog - Generic Linux OS: Group Modified

Vendor Documentation

N/A

Classification

Rule Name

Rule TypeCommon EventClassification
Group ModifiedBase RuleGroup Attribute ModifiedAccount Modified
Group Name ChangedSub RuleGroup Name ModifiedAccount Modified
Group ID ChangedSub RuleGroup Attribute ModifiedAccount Modified
Groupmod Emergency MessageSub RuleGeneral Emergency Log MessageCritical
Groupmod Alert MessageSub RuleGeneral AlertCritical
Groupmod Critical MessageSub RuleGeneral CriticalCritical
Groupmod Error MessageSub RuleGeneral ErrorError
Groupmod Warning MessageSub RuleGeneral WarningWarning
Groupmod Notice MessageSub RuleGeneral NoticeInformation
Groupmod Information MessageSub RuleGeneral InformationInformation
Groupmod Debug MessageSub RuleGeneral Debug MessageInformation

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

Schema Description

N/A<severity>Text/StringN/A
N/A<tag1>Text/StringN/A
N/A<dip>IP AddressN/A
N/A<dname>Text/StringN/A
N/A<process>Text/StringN/A
N/A<processid>NumberN/A
N/A<subject>Text/StringN/A
N/A<group>Text/StringN/A
N/A<tag2Text/StringN/A
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.