vpn.aws
Introduction
The tags beginning with vpn.aws
identify events generated by Amazon Web Services belonging to aws.
Valid tags and data tables
The full tag must have 3 levels. The first two are fixed as vpn.aws
. The third level identifies the type of events sent.
These are the valid tags and corresponding data tables that will receive the parsers' data:
Product / Service | Tags | Data tables |
---|---|---|
Amazon Web Services |
|
|
For more information, read more About Devo tags.
Table structure
These are the fields displayed in this table:
Field | Type | Extra fields |
---|---|---|
eventdate |
| Â |
hostname |
| Â |
connection_log_type |
| Â |
connection_attempt_status |
| Â |
connection_attempt_failure_reason |
| Â |
connection_id |
| Â |
client_vpn_endpoint_id |
| Â |
transport_protocol |
| Â |
connection_start_time |
| Â |
connection_last_update_time |
| Â |
client_ip |
| Â |
username |
| Â |
device_type |
| Â |
device_ip |
| Â |
port |
| Â |
ingress_bytes |
| Â |
egress_bytes |
| Â |
ingress_packets |
| Â |
egress_packets |
| Â |
connection_end_time |
| Â |
connection_reset_status |
| Â |
connection_duration_seconds |
| Â |
hostchain |
| ✓ |
tag |
| ✓ |
rawMessage |
| ✓ |