Skip to main content
Skip table of contents

V 2.0 : Smart Anti Spam Events

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

V 2.0 : Smart Anti Spam EventsBase RuleGeneral Threat MessageSecurity : Activity

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

Schema Description

virtuallogsourceN/AN/AN/A
SubproductN/AN/ACan be vpn/non vpn
Product<vmid>Text/StringProduct name
origin_ipN/AN/AIP of the log origin 
originN/AN/AName of the first Security Gateway that reported this event
Action<action>Text/StringN/A
SIP<sip>IP AddressSource IP
SPort<sport>NumberSource host port number
DIP<dip>IP AddressDestination IP
dport<dport>NumberDestination Port
protocol<protnum>NumberProtocol detected on the connection
ifname<sinterface>Text/StringThe name of the Security Gateway interface, through which a connection traverses
ifdirectionN/AN/AConnection direction
Reason<reason>Text/StringInformation on the error occurred
RuleN/AN/AMatched rule number
InfoN/AN/AN/A
XlateSIP<snatip>IP AddressSource ipv4 after applying NAT
XlateSport<snatport>Numberource port after applying hide NAT on source IP
XlateDIP<dnatip>IP AddressDestination ipv4 after applying NAT
XlateDPort<dnatport>NumberDestination port after applying NAT
UserN/AN/ASource user name
alertN/AN/AN/A
icmp-codeN/AN/AN/A
icmp-typeN/AN/AN/A
matched_categoryN/AN/AN/A
src_user_name<login>Text/StringUser name connected to source IP
recipients<recipient>Text/StringTarget mail recipient
sender_address<sender>Text/StringSource mail address
Url<url>Text/StringN/A
rule_nameN/AN/AN/A
Query_snidN/AN/AN/A
src_machine_name<sname>Text/StringMachine name connected to source IP
timeN/AN/AThe time stamp when the log was created.
rule_uidN/AN/AAccess policy rule ID which the connection was matched on
flagsN/AN/ACheckpoint internal field
loguidN/AN/AUUID  of unified logs 
sequencenumN/AN/ANumber added to order logs with the same linux timestamp and origin
versionN/AN/AN/A
__policy_id_tag<policy>Text/StringCheckpoint internal field
origin_sic_nameN/AN/AMachine SIC 
control-analysisN/AN/AN/A
dst_countryN/AN/AN/A
email_controlN/AN/AN/A
email_session_idN/AN/AN/A
email_spam_categoryN/AN/AN/A
recipients_numberN/AN/AN/A
sender_ipN/AN/AN/A
src_user_dnN/AN/AN/A
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.