V 2.0 : SEP General Agent Activity Messages 1

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

V 2.0 : SEP General Agent Activity Messages

Base Rule

General System Information

Information

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

Event Time

N/A

Text/String

Server Name

<dname>

Text/String

Domain Name

<subject>

Number

N/A

<sname>

Text/String

N/A

<login>

Text/String

N/A

<domainorigin>

Text/String