Skip to main content
Skip table of contents

Syslog - Tanium

Device Details

Device NameSyslog - Tanium
VendorTanium
Device TypeTanium
Supported Model Name/NumberN/A
Supported Software VersionN/A
Collection MethodSyslog
Configurable Log OutputLEEF
Log Source TypeSyslog - Tanium
Log Processing PolicyLogRhythm Default V 2.0
ExceptionsN/A
Additional Informationhttps://docs.tanium.com/connect/connect/audit_reference.html

Supported Log Messages

(List of LR tags used to parse the log information for each message type)

TypeProduct VersionSupported Schema Fields
V 2.0 : Action History EventsN/A<action>, <status>, <login>, <command>, <account>
V 2.0 : Action Mgmt EventsN/A<object>, <login>, <domainorigin>, <objectname>, <tag1>, <vendorinfo> 
V 2.0 : Authentication Success EventsN/A<login>, <session>, <sessiontype>, <sip>, <vendorinfo>, <tag1>
V 2.0 : Content Set Role EventsN/A<object>, <login>, <domainorigin>, <objectname>, <tag1>, <vendorinfo> 
V 2.0 : Content Set Role Privilege EventsN/A<object>, <login>, <domainorigin>, <objectname>, <tag1>, <vendorinfo> 
V 2.0 : Group EventsN/A<object>, <login>, <domainorigin>, <group>, <tag1>, <vendorinfo> 
V 2.0 : Package Mgmt EventsN/A<object>, <login>, <domainorigin>, <objectname>, <tag1>, <vendorinfo> 
V 2.0 : Plugin Mgmt EventsN/A<object>, <login>, <domainorigin>, <objectname>, <tag1>, <vendorinfo> 
V 2.0 : Question History EventsN/A<object>, <login>, <objectname> 
V 2.0 : Question Mgmt EventsN/A<object>, <login>, <domainorigin>, <objectname>, <tag1>, <vendorinfo> 
V 2.0 : Sensor Mgmt EventsN/A<object>, <login>, <domainorigin>, <objectname>, <tag1>, <vendorinfo> 
V 2.0 : User Group Mgmt EventsN/A<object>, <login>, <group>, <tag1>, <vendorinfo> 
V 2.0 : User Logon FailureN/A<reason>, <login>, <sip>, <vendorinfo>
V 2.0 : User Mgmt EventsN/A<object>, <action>, <group>, <tag1>, <login>, <domainorigin>, <account>, <tag2>, <vendorinfo> 

Revision History

KB VersionLog TypeChange TypeDetails
KB 7.1.657.0Syslog - TaniumNew Log Source Optimization (LSO) policy: LogRhythm Default v2.0Optimized new log processing policy for Syslog - Tanium.
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.