Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

These are the fields displayed in these tables:

Anchor
tag1
tag1
auth.secureauth.events

Field

Type

Field transformation

Source field name

Extra fields

eventdate

timestamp

hostname

str

Code Block
split(hostchain, "=", 0)

hostchain

cefVersion

str

embDeviceVendor

str

embDeviceProduct

str

deviceVersion

str

signatureID

str

name

str

severity

str

cat

str

ipRiskScore

float8

priority

int8

browserSession

str

analyzeEngineResult

str

companyName

str

requestID

str

requestDuration

str

userCountryCode

str

deviceUTCTime

timestamp

dst

ip4

dvc

ip4

deviceFacility

str

msg

str

outcome

str

requestClientApplication

str

sourceServiceName

str

spid

int4

src

ip4

suser

str

secureAuthIdPAppliance

str

hostchain

str

tag

str

rawMessage

str

Anchor
tag2
tag2
auth.secureauth.radius

Field

Type

Extra fields

eventdate

timestamp

hostname

str

timestamp

str

server

str

product

str

logtype

str

process

str

transctionId

str

eventMessage

str

hostchain

str

tag

str

rawMessage

str

...