Syslog - Generic Linux OS: Rsyslogd Messages

Vendor Documentation

N/A

Classification

Rule Name

Rule Type

Common Event

Classification

Rsyslogd Messages

Base Rule

General Information

Information

Rsyslogd Emergency Message

Sub Rule

General Emergency Log Message

Critical

Rsyslogd Alert Message

Sub Rule

General Alert

Critical

Rsyslogd Critical Message

Sub Rule

General Critical

Critical

Rsyslogd Error Message

Sub Rule

General Error

Error

Rsyslogd Warning Message

Sub Rule

General Warning

Warning

Rsyslogd Notice Message

Sub Rule

General Notice

Information

Rsyslogd Information Message

Sub Rule

General Information

Information

Rsyslogd Debug Message

Sub Rule

General Debug Message

Information

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

Schema Description

N/A

<severity>

Text/String

N/A

N/A

<tag1>

Text/String

N/A

N/A

<dip>

IP Address

N/A

N/A

<dname>

Text/String

N/A

N/A

<process>

Text/String

N/A

N/A

<processid>

Number

N/A

N/A

<subject>

Text/String

N/A