Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

These are the fields displayed in this table:

Field

Type

Field transformation

Source field name

Extra fields

eventdate

timestamp

 

 

hostname

str

 

 

ACCID

str

 

 

REGION

str

 

 

metadata__product__version

str

 

 

metadata__product__name

str

 

 

metadata__product__feature__name

str

 

 

metadata__product__vendor_name

str

 

 

metadata__profiles

str

 

 

metadata__version

str

 

 

time

timestamp

 

 

cloud__region

str

 

 

cloud__provider

str

 

 

api__response__error

str

 

 

api__response__message

str

 

 

api__operation

str

 

 

api__request__uid

str

 

 

api__version

str

 

 

api__service__name

str

 

 

ref_event_uid

str

 

 

src_endpoint__uid

str

 

 

src_endpoint__ip4

ip4

Code Block
ip4(src_endpoint__ip)

src_endpoint__ip

src_endpoint__ip6

ip6

Code Block
ip6(src_endpoint__ip)

src_endpoint__ip

src_endpoint__domain

str

 

 

resources

str

 

 

identity__user__type

str

 

 

identity__user__name

str

 

 

identity__user__uid

str

 

 

identity__user__uuid

str

 

 

identity__user__account_uid

str

 

 

identity__user__credential_uid

str

 

 

identity__session__created_time

str

 

 

identity__session__mfa

str

 

 

identity__session__issuer

str

 

 

identity__invoked_by

str

 

 

identity__idp__name

str

 

 

http_request__user_agent

str

 

 

class_name

str

 

 

class_uid

str

 

 

category_name

str

 

 

category_uid

str

 

 

severity_id

str

 

 

severity

str

 

 

activity_name

str

 

 

activity_id

str

 

 

type_uid

str

 

 

type_name

str

 

 

unmapped

str

 

 

at_devo_pulling_id

str

 

 

hostchain

str

 

 

tag

str

 

 

rawMessage

str