Table of Contents | ||||
---|---|---|---|---|
|
Introduction
The tags beginning with db.db2
identify events generated by IBM Db2 Database.
Valid tags and data tablestables
The full tag must have at least 6 six levels. The first three two are fixed asdb.db2
. auditThe third level identifies the type of events sent. The fourth, fifth, and sixth levels identity the corresponding environment, application, and clone. An additional tag may be required to specify the type of the logs sent (CSV or key-value pairs)
...
Technology
...
Brand
...
Type
...
Environment
...
Application
...
Clone
...
Data type
...
db
...
db2
...
audit
...
<env>
...
<app>
...
<clon>
...
csv
kvp
.
These are the valid tags and corresponding data tables that will receive the parsers' data:
Product / Service |
---|
Tags | Data |
---|
tables | |
---|---|
IBM Db2 Database |
|
|
|
|
|
|
|
|
For more information, read more about Devo tags.
Table structure
These are the fields displayed in this table:
db.db2.audit
...
db.db2.audit.<env>.<app>.<clon>.kvp
...
db.db2.audit
How is the data sent to Devo?
...
Field | Type | Extra field | Source field name |
---|---|---|---|
eventdate |
| ||
hostname |
| ||
environment |
| venv | |
application |
| vapp | |
clon |
| vclon | |
timestamp |
| ||
category |
| ||
audit_event |
| ||
event_correlator |
| ||
event_status |
| ||
userid |
| ||
authid |
| ||
database_name |
| ||
origin_node_number |
| ||
coordinator_node_number |
| ||
application_id |
| ||
application_name |
| ||
object_type |
| ||
access_approval_reason |
| ||
access_attempted |
| ||
instance_name |
| ||
host_name |
| ||
package_schema |
| ||
package_name |
| ||
package_section |
| ||
package_version |
| ||
local_transaction_id |
| ||
global_transaction_id |
| ||
client_user_id |
| ||
client_workstation_name |
| ||
client_application_name |
| ||
client_accounting_string |
| ||
trusted_context_name |
| ||
connection_trust_type |
| ||
role_inherited |
| ||
policy_name |
| ||
policy_association_object_type |
| ||
policy_association_subobject_type |
| ||
policy_association_object_name |
| ||
policy_association_object_schema |
| ||
audit_status |
| ||
checking_status |
| ||
context_status |
| ||
execute_status |
| ||
execute_with_data |
| ||
objmaint_status |
| ||
secmaint_status |
| ||
sysadmin_status |
| ||
validate_status |
| ||
error_type |
| ||
data_path |
| ||
archive_path |
| ||
message |
| rawMessage | |
hostchain |
| ✓ | |
tag |
| ✓ | |
rawMessage |
| ✓ |