Skip to main content
Skip table of contents

Syslog - NetScout OCI CEF

Device Details

Device Name

NetScout OCI

Vendor

NetScout Systems

Device Type

Omnis Cyber Intelligence

Supported Model Name/Number

N/A

Supported Software Version

N/A

Collection Method

Syslog

Configurable Log Output

CEF

Log Source Type

Syslog - NetScout OCI CEF

Log Processing Policy

LogRhythm Default V 2.0

Exceptions

N/A

Additional Information

N/A

Supported Log Messages

(List of LR tags used to parse the log information for each message type)

Type

Product Version

Supported Schema Fields

Attack Surface Event Messages

N/A

<vendorinfo>, <version>, <vmid>, <object>, <severity>, <objecttype>, <subject>, <sname>, <sip>, <dname>, <dip>, <quantity>, <url>, <sport>

Behavioral Analytics Messages

N/A

<vendorinfo>, <version>, <vmid>, <object>, <severity>, <objecttype>, <subject>, <session>, <sessiontype>, <sip>, <dip>, <protname>, <quantity>, <url>

Catch-All: Level 1

N/A

<tag1>, <severity>

Compliance Messages

N/A

<vendorinfo>, <version>, <vmid>, <object>, <severity>, <objecttype>, <subject>, <dname>, <dip>, <protname>, <quantity>, <url>

IDS Event Messages

N/A

<vendorinfo>, <version>, <vmid>, <object>, <severity>, <objecttype>, <subject>, <sip>, <dip>, <sport>, <dport>, <sname>, <useragent>, <command>, <protname>, <quantity>, <url>

Policy Violation

N/A

<vendorinfo>, <version>, <vmid>, <object>, <severity>, <objecttype>, <subject>, <sname>, <sip>, <dname>, <dip>, <sport>, <protname>, <quantity>, <url>

Threat Intelligence Messages

N/A

<vendorinfo>, <version>, <vmid>, <object>, <severity>, <objecttype>, <subject>, <sname>, <sip>, <dname>, <dip>, <protname>, <quantity>, <url>

Revision History

KB Version

Log Type

Change Type

Details

KB 7.1.705.0

Syslog - NetScout OCI CEF

New Device Documentation

N/A

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.