Pattern : PIX-4-106100 : Connections

Classification

Rule Name

Rule Type

Common Event

Classification

Pattern : PIX-4-106100: Connections

Base Rule

Traffic Allowed by Network Firewall

Network Allow

PIX-X-106100 : Permitted Connection

Sub Rule

Traffic Allowed by Network Firewall

Network Allow

PIX-X-106100 : Denied Connection

Sub Rule

Traffic Denied by Network Firewall

Network Deny

PIX-X-106103 : Permitted Connection

Sub Rule

Traffic Allowed by Network Firewall

Network Allow

PIX-X-106103 : Denied Connection

Sub Rule

Traffic Denied by Network Firewall

Network Deny

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<vmid>

Number

N/A

<sip>

Number

N/A

<sname>

Text/String

N/A

<dip>

Number

N/A

<dname>

Text/String

N/A

<sport>

Number

N/A

<dport>

Number

N/A

<protname>

Text/String

N/A

<login>

Text/String

N/A

<object>

Text/String

N/A

<objectname>

Text/String

N/A

<group>

Text/String

N/A

<amount>

Number

N/A

<tag1>

Text/String