IronPort Image Analysis
Vendor Documentation
Classification
| Rule Name | Rule Type | Classification | Common Event |
|---|---|---|---|
| IronPort Image Analysis | Base Rule | Ops/Information | Analysis Complete |
Mapping with LogRhythm Schema
| Device Key in Log Message | LogRhythm Schema | Data Type | Schema Description |
<severity> | Text\String | ||
| MID | <session> | Number | |
| <object> | Text\String | ||
<subject> | Text\String | ||
| <quantity> | Number |