Skip to main content
Skip table of contents

Netskope : Policy Threat Event

Vendor Documentation

Classification

Rule Name

Rule Type

Classification

Common Event

Base RuleActivityGeneral Activity
Netskope : Policy Threat AlertSub RuleActivityGeneral Alert Log Message
Netskope : Blocked By PolicySub RuleFailed ActivityWeb Activity Blocked
Netskope : Quarantined File/ActionSub RuleActivityQuarantine

Mapping with LogRhythm Schema

Device Key in Log MessageLogRhythm SchemaData Type
Device VendorN/AN/A
Device ProductN/A N/A
Device VersionN/AN/A
Device Event Class ID<vmid>Text/String
Name of the event<threatname>Text/String
Severity of the event<severity>Text/String
accessMethodN/AN/A
action<result>
<tag1>
Text/String
appcategory<subject>Text/String
browserN/AN/A
deviceN/AN/A
osN/AN/A
requestClientApplicationN/AN/A
sourceServiceName<process>Text/String
dst<dip>IP Address
src<sipIP Address
suser<login>Text/String
timestampN/AN/A
url<url>Text/String
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.