Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

These are the fields displayed in this table:these tables:

Anchor
tag1
tag1
db.mssql.audit

Field

Type

Extra field

Source field name

eventdate

timestamp

environment

str

venv

application

str

vapp

clon

str

vclon

rawMessage

str

rawSource

message

str

hostchain

str

tag

str

Anchor
tag2
tag2
 db.mssql.error

Field

Type

Extra field

Field transformation

Source field name

eventdate

timestamp

environment

str

venv

application

str

vapp

clon

str

vclon

rawMessage

str

date

timestamp

Code Block
parsedate(date_str, dateformat("YYYY-MM-DD HH:mm:ss.SS"))

date_str

source

str

message

str

database

str

creation_date

str

first_LSN

str

last_LSN

str

number_device

int4

device_information

str

extMessage

str

hostchain

str

tag

str

...

 
Anchor
tag3
tag3
db.mssql.events

Field

Type

Extra field

Source field name

eventdate

timestamp

environment

str

venv

application

str

vapp

clon

str

vclon

hostname

str

user

str

eventTime

timestamp

hostname2

str

keywords

int8

eventType

str

severityValue

int4

severity

str

eventID

int4

sourceName

str

task

int4

recordNumber

int8

processID

int4

threadID

int4

channel

str

message

str

category

str

eventReceivedTime

timestamp

sourceModuleName

str

sourceModuleType

str

syslogFacilityValue

int4

syslogSeverityValue

int4

costCenter

str

configurationItem

str

teamEmail

str

hostchain

str

tag

str

rawMessage

str