Metric View Password Messages

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

Metric View Password Messages

Base Rule

Object Read

Audit : Access Success

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

severity

<severity>

Text/String

type

<action>

Text/String

TargetAccount.userName

<login>

Text/String

TargetApplication.name

<object>

Text/String

reasondetails

<reason>

Text/String

TargetServer.hostName

<dname>

Text/String

cmdname

<command>

Text/String

adminuserid

<account>

Text/String

errorcode

<responsecode>

Text/String

userID

<login>

Text/String

originatingIPAddress

<sip>

IP Address

originatingHostName

<sname>

Text/String