...
Tags | Data tables |
---|---|
|
|
|
|
|
|
|
|
How is the data sent to Devo?
...
These are the fields displayed in these tables:
Anchor | ||||
---|---|---|---|---|
|
Field | Type | Source field name | Extra fields |
---|---|---|---|
eventdate |
|
| |
hostname |
|
| |
priority_code |
|
| |
cef_tag |
|
| |
cef_version |
|
| |
emb_device_vendor |
|
| |
emb_device_product |
|
| |
device_version |
|
| |
signature_id |
|
| |
name |
|
| |
severity |
|
| |
device_process_name |
|
| |
device_hostname |
|
| |
device_pid |
|
| |
message |
|
| |
hostchain |
|
| ✓ |
tag |
| cef_tag | ✓ |
rawMessage |
|
| ✓ |
Anchor | ||||
---|---|---|---|---|
|
Field | Type | Source field name | Extra fields |
---|---|---|---|
eventdate |
| ||
hostname |
| ||
priorityCode |
| ||
cefTag |
| ||
cefVersion |
| ||
embDeviceVendor |
| ||
embDeviceProduct |
| ||
deviceVersion |
| ||
signatureID |
| ||
name |
| ||
severity |
| ||
_cefVer |
| ||
deviceProcessName |
| ||
dvchost |
| ||
dvcpid |
| ||
msg |
| ||
username |
| ||
userip |
| ||
usermac |
| ||
authmethod |
| ||
servername |
| ||
serverip |
| ||
apname |
| ||
bssid |
| ||
hostchain |
| ✓ | |
tag |
| cefTag | ✓ |
rawMessage |
| ✓ |
Anchor | ||||
---|---|---|---|---|
|
Field | Type | Source field name | Extra fields |
---|---|---|---|
eventdate |
|
| |
hostname |
|
| |
priorityCode |
|
| |
cefTag |
|
| |
cefVersion |
|
| |
embDeviceVendor |
|
| |
embDeviceProduct |
|
| |
deviceVersion |
|
| |
signatureID |
|
| |
name |
|
| |
severity |
|
| |
_cefVer |
|
| |
cs2 |
|
| |
dvc |
|
| |
in |
|
| |
cs1 |
|
| |
rt |
|
| |
out |
|
| |
dtz |
|
| |
deviceZoneID |
|
| |
eventAnnotationAuditTrail |
|
| |
eventAnnotationVersion |
|
| |
eventAnnotationModificationTime |
|
| |
art |
|
| |
originalAgentAddress |
|
| |
eventId |
|
| |
at |
|
| |
mrt |
|
| |
customerURI |
|
| |
originalAgentZoneURI |
|
| |
assetCriticality |
|
| |
eventAnnotationFlags |
|
| |
agt |
|
| |
modelConfidence |
|
| |
aid |
|
| |
amac |
|
| |
deviceZoneExternalID |
|
| |
Severity |
|
| |
relevance |
|
| |
av |
|
| |
eventAnnotationStageUpdateTime |
|
| |
locality |
|
| |
ahost |
|
| |
originalAgentVersion |
|
| |
customerID |
|
| |
atz |
|
| |
originalAgentMacAddress |
|
| |
originalAgentType |
|
| |
originalAgentId |
|
| |
eventAnnotationManagerReceiptTime |
|
| |
originalAgentHostName |
|
| |
priority |
|
| |
deviceZoneURI |
|
| |
eventAnnotationEndTime |
|
| |
hostchain |
|
| ✓ |
tag |
| cefTag | ✓ |
rawMessage |
|
| ✓ |
Anchor | ||||
---|---|---|---|---|
|
Field | Type | Source field name | Extra fields |
---|---|---|---|
eventdate |
|
| |
hostname |
|
| |
priority_code |
|
| |
cef_tag |
|
| |
cef_version |
|
| |
emb_device_vendor |
|
| |
emb_device_product |
|
| |
device_version |
|
| |
signature_id |
|
| |
name |
|
| |
severity |
|
| |
device_process_name |
|
| |
device_hostname |
|
| |
device_pid |
|
| |
message |
|
| |
hostchain |
|
| ✓ |
tag |
| cef_tag | ✓ |
rawMessage |
|
| ✓ |