Skip to main content
Skip table of contents

V 2.0 : SmartConsole Events

Vendor Documentation

Classification

Rule NameRule TypeCommon EventClassification
V 2.0 : SmartConsole EventsBase RuleGeneral InformationInformation

Mapping with LogRhythm Schema

Device Key in Log MessageLogRhythm SchemaData TypeSchema Description
Product<vmid>Text/StringProduct name
Originip<dip>IP AddressIP of the log origin 
origin<dname>Text/StringName of the first Security Gateway that reported this event
Operation<action>
<tag1>
Text/StringN/A
subject<vendorinfo>Text/StringAudit log category
statusN/AN/AOK/Warning/Error
administrator<login>Text/StringUser who performed the operation
clientN/AN/AN/A
performedonN/AN/AThe name of the object that is affected by the action
objecttableN/AN/AN/A
objecttypeN/AN/AThe type of the affected object
generalinformationN/AN/AN/A
ActionN/AN/AN/A
ifdirectionN/AN/AConnection direction
ifnameN/AN/AThe name of the Security Gateway interface through which a connection traverses
session_idN/AN/AN/A
alertN/AN/AAlert level of matched rule (for connection logs)
client_ip_host<sip>IP AddressIP address of the client machine from which the change was performed
flagsN/AN/ACheckpoint internal field
loguidN/AN/AUUID of unified logs  
orginsicnameN/AN/AMachine SIC 
sequencenumN/AN/ANumber added to order logs with the same Linux timestamp and origin
versionN/AN/AN/A
admin_levelN/AN/AN/A
cma_nameN/AN/AN/A
customer_nameN/AN/AN/A
fieldschangesN/AN/ASpecific changes done on the affected object
sendtotrackerasadvancedauditlogN/AN/AN/A
session_descriptionN/AN/AN/A
session_nameN/AN/AN/A
session_uidN/AN/AN/A
mds_nameN/AN/AN/A
operation_numberN/AN/AOperation number done by the administrator, with each operation represented by a number 
uidN/AN/AN/A
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.