edr.observeit
Introduction
The tags begin with edr.observeit
identify the events generated by ObserveIT.
Tag structure
The full tag must have 3 levels. The first two are fixed as edr.observeit
. The third level identifies the type of events sent.
Product / Services | Tags | Data tables |
---|---|---|
ObserveIT |
|
|
For more information, read more about Devo tags.
Table structure
These are the fields displayed in this table:
edr.observeit.events
Field | Type | Extra fields |
---|---|---|
eventdate |
| Â |
cefVersion |
| Â |
embDeviceVendor |
| Â |
embDeviceProduct |
| Â |
deviceVersion |
| Â |
signatureID |
| Â |
name |
| Â |
severity |
| Â |
_cefVer |
| Â |
cat |
| Â |
cs1Label |
| Â |
cs1 |
| Â |
cs2Label |
| Â |
cs2 |
| Â |
cs3Label |
| Â |
cs3 |
| Â |
cs4Label |
| Â |
cs4 |
| Â |
cs5Label |
| Â |
cs5 |
| Â |
cs6Label |
| Â |
cs6 |
| Â |
destinationServiceName |
| Â |
deviceProcessName |
| Â |
dhost |
| Â |
dntdom |
| Â |
dproc |
| Â |
duid |
| Â |
duser |
| Â |
dvchost |
| Â |
dvc |
| Â |
end |
| Â |
msg |
| Â |
rt |
| Â |
shost |
| Â |
sntdom |
| Â |
sproc |
| Â |
src |
| Â |
start |
| Â |
suid |
| Â |
suser |
| Â |
externalId |
| Â |
origin |
| Â |
reason |
| Â |
requestMethod |
| Â |
sourceServiceName |
| Â |
hostchain |
| ✓ |
tag |
| ✓ |
rawMessage |
| ✓ |