Skip to main content
Skip table of contents

V 2.0 : Identity Awareness Events

Vendor Documentation

Classification

Rule NameRule TypeCommon EventClassification
V 2.0 : Identity Awareness EventsBase RuleGeneral InformationInformation

Mapping with LogRhythm Schema

Device Key in Log MessageLogRhythm SchemaData TypeSchema Description
virtuallogsourceN/AN/AN/A
subproductN/AN/AN/A
product<vmid>Text/StringProduct name
OriginipN/AN/AIP of the log origin 
originN/AN/AName of the first Security Gateway that reported this event
Action<action>Text/StringN/A
SIP<sip>IP AddressSource IP
SPortN/AN/ASource host port number
DIPN/AN/ADestination IP
dportN/AN/AN/A
protocolN/AN/AProtocol detected on the connection
ifnameN/AN/AThe name of the Security Gateway interface through which a connection traverses
ifdirectionN/AN/AN/A
reasonN/AN/AInformation on the error that occurred
RuleN/AN/AN/A
InfoN/AN/AN/A
XlateSIPN/AN/AN/A
XlateSportN/AN/AN/A
XlateDIPN/AN/AN/A
XlateDPortN/AN/AN/A
user<login>Text/StringSource user name
src_user_nameN/AN/AN/A
endpoint_ipN/AN/AN/A
domain_name<domainorigin>Text/StringN/A
identity_srcN/AN/AN/A
Query_snid<session>Text/StringN/A
termination_reason<reason>Text/StringN/A
duration<duration>NumberN/A
identity_typeN/AN/AN/A
description<vendorinfo>Text/StringN/A
auth_status<status>Text/StringN/A
auth_methodN/AN/AN/A
src_user_group<group>Text/StringN/A
src_machine_groupN/AN/AN/A
src_machine_name<sname>Text/StringN/A
PolicyNameN/AN/AN/A
client_nameN/AN/AN/A
client_ip_hostN/AN/AN/A
timeN/AN/AThe time stamp when the log was created
alertN/AN/AN/A
flagsN/AN/AN/A
logidN/AN/AN/A
loguidN/AN/AUUID of unified logs 
originsicnameN/AN/AMachine SIC 
sequencenumN/AN/ANumber added to order logs with the same Linux timestamp and origin
versionN/AN/AN/A
authentication_trialN/AN/AN/A
browserN/AN/AN/A
client_buildN/AN/AN/A
client_versionN/AN/AN/A
device_identificationN/AN/AN/A
host_typeN/AN/AN/A
lastupdatetimeN/AN/AN/A
latitudeN/AN/AN/A
longitudeN/AN/AN/A
macsourceaddressN/AN/AN/A
os_bitsN/AN/AN/A
os_buildN/AN/AN/A
os_editionN/AN/AN/A
os_nameN/AN/AN/A
os_service_packN/AN/AN/A
os_versionN/AN/AN/A
rolesN/AN/AN/A
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.