HTTP Requests 1

Vendor Documentation

Classification

Rule Name

Rule Type

Classification

Common Event

HTTP Requests

Base Rule

Information

General HTTP Request Received

GET Request

Sub Rule

Activity

HTTP Get

HEAD Request

Sub Rule

Activity

HTTP Head

POST Request

Sub Rule

Activity

HTTP Post

CONNECT Request

Sub Rule

Activity

HTTP Connect

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<vmid>

Text/String/Number

N/A

<severity>

Text/String/Number

N/A

<sip>

Ip Address

N/A

<dip>

Ip Address

N/A

<sname>

Text/String

N/A

<dname>

Text/String

N/A

<sport>

Number

N/A

<protname>

Text/String

N/A

<session>

Number

N/A

<object>

Text/String

N/A

<objectname>

Text/String

N/A

<subject>

Text/String

N/A

<useragent>

Text/String

N/A

<url>

Text/String

N/A

<tag1>

Text/String