Rule Allowed

Classification

Rule Name

Rule Type

Common Event

Classification

Rule Allowed

Base Rule

Matched Rule

Information

Rule Allowed : HTTP_REQUEST

Sub Rule

Rule Allowed

Other Audit Success

Rule Allowed : CLIENTSSL_CLIENTCERT

Sub Rule

Rule Allowed

Other Audit Success

Rule Allowed : HTTP_RESPONSE

Sub Rule

Rule Allowed

Other Audit Success

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<severity>

Text/String

N/A

<sname>

Text/String

N/A

<account>

Text/String

N/A

<process>

Text/String

N/A

<processid>

Number

N/A

<object>

Text/String

N/A

<sender>

Text\String

N/A

<tag2>

Text\String

N/A

<tag3>

Text\String