vpn.arraynetworks
The tags beginning with vpn.arraynetworks
identify log events generated by Array Networks.
Valid tags and data tables
The full tag must have 4 levels. The first two are fixed as vpn.arraynetworks
. The third level identifies the product and the fourth is the type of events sent.
These are the valid tags and corresponding data tables that will receive the parsers' data:
Product / Service | Tags | Data tables |
---|---|---|
Array Networks |
|
|
For more information, read more about Devo tags.
Table structure
These are the fields displayed in this table:
vpn.arraynetworks.audit.events
Field | Type | Extra fields |
---|---|---|
eventdate |
|
|
machine |
|
|
facility |
|
|
logLevel |
|
|
id |
|
|
time |
|
|
timezone |
|
|
type |
|
|
pri |
|
|
fw |
|
|
eid |
|
|
vpn |
|
|
user |
|
|
sessionid |
|
|
proto |
|
|
src |
|
|
sport |
|
|
dst |
|
|
dport |
|
|
dstname |
|
|
arg |
|
|
op |
|
|
agent |
|
|
result |
|
|
rcvd |
|
|
sent |
|
|
duration |
|
|
aaa_method |
|
|
aaa_role |
|
|
msg |
|
|
clientip |
|
|
hostname |
|
|
mac |
|
|
hostchain |
| ✓ |
tag |
| ✓ |
rawMessage |
|
|