Skip to main content
Skip table of contents

V 2.0 Flood/Packet Threat Messages 1

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

V 2.0 Flood/Packet Threat Messages

Base Rule

General Threat Message

Activity

V 2.0 Potential Denial Of Service Blocked MessagesSub RuleNetwork Denial Of Service

Denial Of Service

V 2.0 Potential Denial Of Service Blocked MessagesSub RuleFailed Network Denial Of ServiceFailed Denial of Service
V 2.0 Potentially Threatening Packet DroppedSub RuleFailed Protocol AnomalyFailed Attack
V 2.0 Potentially Threatening Packet AllowedSub RuleGeneral Attack ActivityAttack

Mapping with LogRhythm Schema  

Device Key in Log MessageLogRhythm SchemaData Type
N/A<vmid>Text/String
N/A<severity>Text/String
N/A<sip>Number
N/A<dip>Number
N/A<snatip>Number
N/A<dnatip>Number
N/A<sinterface>Text/String
N/A<dinterface>Text/String
N/A<protname>Text/String
N/A<threatname>Text/String
N/A<threatid>Number
N/A<policy>Text/String
N/A<action>Text/String
N/A<tag1>Text/String
N/A<tag2>Text/String
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.