Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Converted from version 'v7.0.8'.

...

Company Product / service Valid tags

macOS X

Docker container logs 

  • box.docker.stats

z/OS for IBM mainframes

  • box.zos

IBM i

  • box.as400.audit.type2 +info

logo linux - Blog de Noticias Webup Hosting

go-audit Linux auditing 

  • box.audit.unix.go-audit

Linux kernel firewall - iptables


Oracle VMware (ESX) Machine System Logs

Note

This technology is also supported in CEF via syslog.+info


Unix-like System Logs 

Windows Event Logs

Windows logs via NXlog

  • box.win_nxlog.application +info
  • box.win_nxlog.group_policy +info
  • box.win_nxlog.invalid +info
  • box.win_nxlog.other +info
  • box.win_nxlog.powershell +info
  • box.win_nxlog.print +info
  • box.win_nxlog.remote_conn +info
  • box.win_nxlog.security +info
  • box.win_nxlog.smb +info
  • box.win_nxlog.sysmon +info
  • box.win_nxlog.system +info
  • box.win_nxlog.windows_powershell +info

Windows logs via Snare

Windows log via Quest Intrust

  • box.win_intrust +info
  • box.win_intrust.application +info
  • box.win_intrust.security +info
  • box.win_intrust.system +info
  • box.win_intrust.other +info
  • box.win_intrust.invalid +info