Skip to main content
Skip table of contents

V 2.0 General DHCP Messages

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

V 2.0 General DHCP MessagesBase Rule

General DHCP

Information

V 2.0 DHCP Lease Renewed

Sub RuleDHCP Lease RenewedInformation
V 2.0 DHCP Lease IssuedSub RuleDHCP Lease ObtainedInformation
V 2.0 DHCP Lease EndedSub RuleDHCP Lease ExpiredInformation

Mapping with LogRhythm Schema  

Device Key in Log MessageLogRhythm SchemaData TypeSchema Description
Type (type)<vmid>Text/StringSpecifies the type of log; the value is SYSTEM.
Content/Threat Type (subtype)<vendorinfo>Text/StringA subtype of the system log; refers to the system daemon generating the log
Event ID (eventid)

<action>

<tag1>

Text/StringThe string shows the name of the event.
Severity (severity)<severity>Text/StringSeverity associated with the event; values are informational, low, medium, high, critical.
Description (opaque)<subject>Text/StringDetailed description of the event, up to a maximum of 512 bytes.
<sip>IP Address
<smac>Text/String
<sname>Text/String
<dinterface>Text/String
<dip>IP Address
Device Name (device_name)<objectname>Text/StringThe hostname of the firewall on which the session was logged.


JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.