Document toolboxDocument toolbox

vpn.juniper

Introduction

The tags beginning with vpn.juniper identify events generated by Juniper Networks.

Valid tags and data tables

The full tag must have three levels. The first two are fixed as vpn.juniper. The third level identifies the type of events sent.

These are the valid tags and corresponding data tables that will receive the parsers' data:

Product/Service

Tags

Data table

Product/Service

Tags

Data table

Juniper VPN

vpn.juniper.sa

vpn.juniper.sa

vpn.juniper.srx

vpn.juniper.srx

For more information, read more About Devo tags.

Table structure

vpn.juniper.sa

Field

Type

Extra Fields

Source field name

Field

Type

Extra Fields

Source field name

eventdate

timestamp

 

 

machine

str

 

vmachine

hostchain

str

✓

 

tag

str

✓

 

serverdate

timestamp

 

 

node

str

 

 

srcIp

ip4

 

 

user

str

 

 

realm

str

 

 

role

str

 

 

msg

str

 

 

rawMessage

str

 

 

vpn.juniper.srx

Field

Type

Extra fields

Field

Type

Extra fields

eventdate

timestamp

 

hostname

str

 

machine

str

 

fpc_slot

str

 

pic_slot

str

 

slot_id

str

 

process_name

str

 

process_id

str

 

log_type

str

 

ike_version

str

 

message

str

 

vpn_name

str

 

gateway_name

str

 

local_gateway

str

 

remote_gateway

str

 

tunnel_id

str

 

local_id

str

 

local_ip

ip4

 

local_port

str

 

local_tunnel_if

str

 

local_ike_id

str

 

remote_id

str

 

remote_ip

ip4

 

remote_port

str

 

remote_tunnel_ip

ip4

 

remote_ike_id

str

 

direction

str

 

spi

str

 

aux_spi

str

 

mode

str

 

type

str

 

vr_id

str

 

sa_type

str

 

fc_name

str

 

traffic_selector

str

 

xauth_username

str

 

reason

str

 

role

str

 

hostchain

str

✓

tag

str

✓

rawMessage

str

✓