LDAP Messages 2

Classification

Rule Name

Rule Type

Common Event

Classification

LDAP Messages

Base Rule

General LDAP Message

Information

User Authentication Failure

Sub Rule

Authentication Failure Activity

Authentication Failure

Active Directory Locked

Sub Rule

Failed To Open Active Directory

Error

LDAP Server Connection Failure

Sub Rule

Unable To Connect To LDAP Server

Error

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<severity>

Text/string

N/A

<sname>

Text/String

N/A

<process>

Text/String

N/A

<processid>

Number

N/A

<command>

Text/Number

N/A

<tag1>

Text/String

N/A

<login>

Text/String

N/A

<result>

Text/String

N/A

<tag2>

Text/String

N/A

<reason>

Text/String