Starting Agent

Classification

Rule Name

Rule Type

Common Event

Classification

Starting Agent

Base Rule

Process/Service Starting

Startup and Shutdown

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

Starting Agent

<severity>

Text\String

N/A

<dname>

Text\String

N/A

<process>

Text\String

N/A

<object>

Text\String

N/A

<subject>

Text\String

N/A

<serialnumber>

Text\String