CEF Key
|
Description
|
Example
|
||
Header (Device Event Class ID)
|
Unique identifier per event-type
|
|
||
Header (Device Product)
|
Product of sending device
|
|
||
Header (Device Vendor)
|
Product vendor
|
|
||
Header (Device Version)
|
Service version
|
|
||
Header (Name)
|
Category of the event
|
|
||
Header (Severity)
|
Importance of the event
|
|
||
Header (Version)
|
CEF format version
|
|
||
cat
|
category
|
|
||
cs1
|
Account
|
|
||
cs1Label
|
Corresponding label for the
cs1 field |
|
||
cs2
|
Role
|
|
||
cs2Label
|
Corresponding label for the
cs2 field |
|
||
cs3
|
Activity
|
|
||
cs3Label
|
Corresponding label for the
cs3 field |
|
||
cn1
|
Result
|
|
||
cn1Label
|
Corresponding label for the
cn1 field |
|
||
cn2
|
Source
|
|
||
cn2Label
|
Corresponding label for the
cn2 field |
|
||
msg
|
Details
|
|
||
rt
|
Logged time
|
|
||
TrendMicroV1CompanyID
|
Company ID
|
|
Views: