cef0.fortinet.fortinacVmCa
Introduction
The table cef0.fortinet.fortinacVmCa identifies events in CEF format generated by Fortinet FortiNAC.
Tag structure
Events in CEF format don't have a specific tag structure, as explained in Technologies supported in CEF syslog format. They are always sent to a table with the structure cef0.deviceVendor.deviceProduct.
In this case, the valid data tables are:
cef0.fortinet.fortinacVmCa
How is the data sent to Devo?
Learn more about CEF syslog format and how Devo tags these events in Technologies supported in CEF syslog format.
Sample data
Field | Type | Extra fields |
---|---|---|
eventdate |
| - |
hostname |
| - |
priorityCode |
| - |
cefTag |
| - |
cefVersion |
| - |
embDeviceVendor |
| - |
embDeviceProduct |
| - |
deviceVersion |
| - |
signatureID |
| - |
name |
| - |
severity |
| - |
category |
| - |
message |
| - |
device_receipt_time |
| - |
source_hostname |
| - |
source_ip |
| - |
source_mac |
| - |
source_user_id |
| - |
cs1Label |
| - |
cs1 |
| - |
rawMessage |
| ✓ |