cloud.aws.cloudfront
Introduction
The tags beginning with cloud.aws.cloudfront
identify events generated by AWS CloudFront.
Valid tags and data tables
The full tag must have 4 levels. The first 3 are fixed as cloud.aws.cloudfront
. The fourth level indicates the event subtype.
These are the valid tags and corresponding data tables that will receive the parsers' data:
Product / Service | Tags | Data tables |
---|---|---|
AWS CloudFront |
|
|
|
|
For more information, read more About Devo tags.
Table structure
These are the fields displayed in these tables:
cloud.aws.cloudfront.rmtp_1
Field | Type | Source field name | Extra fields |
---|---|---|---|
eventdate |
|
|
|
hostname |
|
|
|
ACCID |
|
|
|
REGION |
|
|
|
date |
|
|
|
time |
|
|
|
x_edge_location |
|
|
|
c_ip |
|
|
|
x_event |
|
|
|
c_bytes |
|
|
|
x_cf_status |
|
|
|
x_cf_client_id |
|
|
|
cs_uri_stem |
|
|
|
cs_uri_query |
|
|
|
c_referrer |
|
|
|
x_page_url |
|
|
|
c_user_agent |
|
|
|
x_sname |
|
|
|
x_sname_query |
|
|
|
x_file_ext |
|
|
|
x_sid |
|
|
|
message |
| rawMessage |
|
hostchain |
|
| ✓ |
tag |
|
| ✓ |
rawMessage |
|
| ✓ |
cloud.aws.cloudfront.web_1
Field | Type | Source field name | Extra fields |
---|---|---|---|
eventdate |
|
|
|
hostname |
|
|
|
ACCID |
|
|
|
REGION |
|
|
|
date |
|
|
|
time |
|
|
|
x_edge_location |
|
|
|
sc_bytes |
|
|
|
c_ip |
|
|
|
cs_method |
|
|
|
cs_Host |
|
|
|
cs_uri_stem |
|
|
|
sc_status |
|
|
|
cs_Referer |
|
|
|
cs_User_Agent |
|
|
|
cs_uri_query |
|
|
|
cs_Cookie |
|
|
|
x_edge_result_type |
|
|
|
x_edge_request_id |
|
|
|
x_host_header |
|
|
|
cs_protocol |
|
|
|
cs_bytes |
|
|
|
time_taken |
|
|
|
x_forwarded_for |
|
|
|
ssl_protocol |
|
|
|
ssl_cipher |
|
|
|
x_edge_response_result_type |
|
|
|
cs_protocol_version |
|
|
|
fle_status |
|
|
|
fle_encrypted_fields |
|
|
|
c_port |
|
|
|
time_to_first_byte |
|
|
|
x_edge_detailed_result_type |
|
|
|
sc_content_type |
|
|
|
sc_content_len |
|
|
|
sc_range_start |
|
|
|
sc_range_end |
|
|
|
message |
| rawMessage |
|
hostchain |
|
| ✓ |
tag |
|
| ✓ |
rawMessage |
|
| ✓ |