Skip to main content
Skip table of contents

Pattern 13 : General Linux Host Messages

Classification

Rule Name

Rule Type

Common Event

Classification

Pattern 13 : General Linux Host MessagesBase RuleGeneral OperationsOther Operations
Linux Command ExecutedSub RuleCommand ExecutedAccess Success
Logged On As RootSub RuleUser LogonAuthentication Success
Logged InSub RuleUser LogonAuthentication Success
Logged OnSub RuleUser LogonAuthentication Success
Access DeniedSub RuleAccess Object FailureAccess Failure
Cannot Open FileSub RuleRead Object FailureAccess Failure
Cannot Bind UserSub RuleCannot Bind As UserError
Last Message RepeatedSub RuleLast Message RepeatedInformation
Server ListeningSub RuleServer Listening On IP And PortInformation

Mapping with LogRhythm Schema  

Device Key in Log MessageLogRhythm SchemaData Type
N/A<severity>Text/String
N/A<dname>Number/String
N/A<process>Text/String
N/A<tag1>Text/String
N/A<login>Text/String
N/A<sname>Text/String
N/A<account>Text/String
N/A<object>Text/String
N/A<processid>Number
N/A<group>Text/String
N/A<domain>Text/String
N/A<sip>Number
N/A<sport>Number
N/A<domainorigin>Text/String
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.