Skip to main content
Skip table of contents

Syslog - LogRhythm NetMon V 2.0 : Netmon DPA

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

V 2.0: Netmon DPA

Base Rule

End of Flow

Network Traffic

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

Schema Description

N/A

<severity>

Text/String

N/A

N/A

N/A

N/A

N/A

N/A

N/A

N/A

N/A

N/A

N/A

N/A

N/A

N/A

<vmid>

Number

N/A

N/A

<session>

Text/String/Number

N/A

N/A

<sip>

Ip Address

N/A

N/A

<dip>

Ip Address

N/A

N/A

<sport>

Number

N/A

N/A

<dport>

Number

N/A

N/A

<smac>

Text/String/Number

N/A

N/A

<dmac>

Text/String/Number

N/A

N/A

<protnum>

Number

N/A

N/A

<processid>

Number

N/A

N/A

<bytesin>

Number

N/A

N/A

<bytesout>

Number

N/A

N/A

<packetsin>

Number

N/A

N/A

<seconds>

Number

N/A

N/A

N/A

N/A

N/A

N/A

N/A

N/A

N/A

DeepScript

N/A

N/A

N/A

rulename

<vendorinfo>

Text/String

N/A

ruleid

N/A

N/A

N/A

alarmid

N/A

N/A

N/A

TrafficDirection_NM

N/A

N/A

N/A

pastebin_source_NM

N/A

N/A

N/A

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.