Syslog - Imperva Incapsula CEF
Device Details
Device Name | Syslog - Imperva Incapsula CEF |
Vendor | Imperva |
Device Type | Incapsula |
Supported Model Name/Number | N/A |
Supported Software Version | N/A |
Collection Method | Syslog |
Configurable Log Output | CEF |
Log Source Type | Syslog - Imperva Incapsula CEF |
Log Processing Policy | LogRhythm Default V 2.0 |
Exceptions | N/A |
Additional Information | https://docs.imperva.com/bundle/cloud-application-security/page/more/log-file-structure.htm |
Supported Log Messages
(List of LR tags used to parse the log information for each message type)
Type | Product Version | Supported Schema Fields |
---|---|---|
V 2.0 : Access And Security Events | N/A | <vendorinfo>, <vmid>, <threatname>, <severity>, <sip>, <size>, <responsecode>, <command>, <protname>, <version>, <action>, <process>, <sport>, <url>, <useragent>, <threatid>, <policy>, <dip>, <dport> |
Revision History
KB Version | Log Type | Change Type | Details |
KB 7.1.657.0 | Syslog - Imperva Incapsula CEF | New Log Source Optimization (LSO) policy: LogRhythm Default v2.0 | Optimized new log processing policy for Syslog - Imperva Incapsula CEF. |