Skip to main content
Skip table of contents

V 2.0 General Monitoring Events

Vendor Documentation

Classification

Rule NameRule TypeCommon Event Classification
V 2.0 General Monitoring EventsBase RuleInformation

Mapping with LogRhythm Schema 

Device Key In Log MessageLogRhythm SchemaData TypeSchema Description
Type (type)<vmid>Text/StringSpecifies the type of log; value is SYSTEM.
Content/Threat Type (subtype)<vendorinfo>Text/StringSubtype of the system log; refers to the system daemon generating the log
Event ID (eventid)<action>Text/StringString showing the name of the event.
Object (object)<object>Text/StringName of the object associated with the system event.
Severity (severity)<severity>Text/StringSeverity associated with the event; values are informational, low, medium, high, critical.
Description (opaque)<subject>Text/StringDetailed description of the event, up to a maximum of 512 bytes.
Device Name (device_name)<objectname>Text/StringThe hostname of the firewall on which the session was logged.
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.