TCP Dump Starting Broadcast

Classification

Rule Name

Rule Type

Common Event

Classification

TCP Dump Starting Broadcast

Base Rule

Process/Service Starting

Startup and Shutdown

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<process>

Text/String

N/A

<vmid>

Number

N/A

<protname>

Text/String

N/A

<object>

Text/String

from

<sip>

Number

N/A

<sport>

Number