UTM : DNS

Vendor Documentation

Classification

Rule Name

Rule Type

Classification

Common Event

UTM : DNS

Base Rule

Error

DNS Server Timed Out

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

Schema Description

severity

<severity>

Text/String

N/A

logid

<vmid>

<tag1>

Number

N/A

level

<severity>

Number/Text

N/A

policyid

<policy>

Number

N/A

sessionid

<session>

Number/Text/String

N/A

user

<account>

Text/String

N/A

srcport

<sport>

Number

N/A

srcintf

<sinterface>

Text/String/Number

N/A

dstport

<dport>

Number

N/A

dstintf

<dinterface>

Text/String/Number

N/A

proto

<protnum>

Number

N/A

qname

<dname>

Text/String

N/A

msg

<subject>

Text/String

N/A

error

<reason>

Text/String

N/A