V 2.0 GTP Log Messages 1

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

V 2.0 GTP Log Messages

Base Rule

General Network Traffic

Network Traffic

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<vmid>

Text/String

N/A

<vendorifno>

Text/String

N/A

<severity>

Text/String

N/A

<sip>

Text/String/Number

N/A

<dip>

Text/String/Number

N/A

<sport>

Number

N/A

<dport>

Number

N/A

<sinterface>

Text/String/Number

N/A

<dinterface>

Text/String/Number

N/A

<protname>

Text/String

N/A

<subject>

Text/String

N/A

<session>

Text/String/Number

N/A

<object>

Text/String/Number

N/A

<objectname>

Text/String/Number

N/A

<group>

Text/String

N/A

<policy>

Text/String

N/A

<action>

Text/String

N/A

<command>

Text/String

N/A

<tag1>

Text/String