System/Critical Alert Message
Vendor Documentation
Classification
| Rule Name | Rule Type | Classification | Common Event |
|---|---|---|---|
| System/Critical Alert Message | Base Rule | Ops/Information | Sending Email |
| System/Critical Alert Message Sent | Sub Rule | Ops/Information | Email Message Sent |
Mapping with LogRhythm Schema
| Device Key in Log Message | LogRhythm Schema | Data Type | Schema Description |
<severity> | Text\String | ||
| <subject> | Text\String | ||
| <recipient> | Text\String | ||
<tag1> | Text\String |