Skip to main content
Skip table of contents

Netskope : Activity from Watchlist User

Vendor Documentation

Classification

Rule Name

Rule Type

Classification

Common Event

Base RuleActivityWatchlist Hit

Mapping with LogRhythm Schema  

Device Key in Log MessageLogRhythm SchemaData Type
Device vendorN/AN/A
device productN/A N/A
Device versionN/AN/A
Device event class id<vmid>Text/String
Event name<policy>Text/String
Severity of the event<severity>Text/String
appSessionIdN/AN/A
sourceAddress<sip>IP Address
destinationAddress<dip>IP Address
requestClientApplicationN/AN/A
sourceServiceName<process>Text/String
sourceUserName<login>Text/String
deviceExternalIdN/AN/A
deviceActionN/AN/A
timestampN/AN/A
managementIdN/AN/A
appcategory<subject>Text/String
hostname<sname>Text/String
osN/AN/A
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.