cloud.rubrik
Introduction
The tags beginning with cloud.rubrik
identify events generated by Rubrik.
Valid tags and data tables
The full tag must have 3 levels. The first two are fixed as cloud.rubrik
. The third level identifies the type of events sent.
These are the valid tags and corresponding data tables that will receive the parsers' data:
Product / Service | Tags | Data tables |
---|---|---|
Rubrik cloud data management |
|
|
|
| |
| ||
|
For more information, read more About Devo tags.
Table structure
These are the fields displayed in these tables:
cloud.rubrik.audit
Field | Type | Extra fields |
---|---|---|
eventdate |
|
|
hostname |
|
|
user_note |
|
|
username |
|
|
id |
|
|
message |
|
|
time |
|
|
severity |
|
|
status |
|
|
cluster_id |
|
|
cluster_name |
|
|
cluster_timezone |
|
|
cluster_typename |
|
|
org_id |
|
|
org_name |
|
|
typename |
|
|
at_devo_pulling_id |
|
|
hostchain |
| ✓ |
tag |
| ✓ |
rawMessage |
| ✓ |
cloud.rubrik.events
Field | Type | Source field name | Extra fields |
---|---|---|---|
eventdate |
|
|
|
machine |
|
|
|
timestamp |
|
|
|
application_name |
|
|
|
pid |
|
|
|
event_id |
|
|
|
event_name |
|
|
|
event_series_id |
|
|
|
event_severity |
|
|
|
event_type |
|
|
|
object_id |
|
|
|
object_name |
|
|
|
object_type |
|
|
|
cluster_id |
|
|
|
cluster_name |
|
|
|
error_id |
|
|
|
error_code |
|
|
|
error_message |
|
|
|
error_reason |
|
|
|
error_remedy |
|
|
|
job_instance_id |
|
|
|
location_name |
|
|
|
node_id |
|
|
|
node_ip_address |
|
|
|
audit_user_name |
|
|
|
audit_user_id |
|
|
|
status |
|
|
|
url |
|
|
|
message |
|
|
|
source |
|
|
|
hostchain |
|
| ✓ |
tag |
|
| ✓ |
rawMessage |
| rawSource | ✓ |