Monitor Status

Classification

Rule Name

Rule Type

Common Event

Classification

Monitor Status

Base Rule

Process Status

Information

Monitor Status Up

Sub Rule

Monitor Up

Information

Monitor Status Down

Sub Rule

Interface Changed State To Down

Warning

Monitor Status Node Down

Sub Rule

Interface Changed State To Down

Warning

Monitor Status Node Up

Sub Rule

Monitor Up

Information

Monitor Status Unchecked

Sub Rule

Monitor Down

Information

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<severity>

Text/String

N/A

<vmid>

Number

N/A

<sname>

Text/String

N/A

<dip>

IP Address

N/A

<dname>

Text/String

N/A

<dport>

Number

N/A

<process>

Text/String

N/A

<processid>

Number

N/A

<object>

Text/String

N/A

<duration>

Number

N/A

<tag1>

Text/String