Parsers and Generated Fields
Tag Fields Created by Parser akamai-asec
#Cps.version
#Vendor
#ecs.version
#event.dataset
#event.kind
#event.module
#event.outcome
#observer.type
Fields Identified by Parser akamai-asec
Source Field | CPS Field |
---|---|
source.address | client.address |
source.ip | client.ip |
Vendor.httpMessage.requestId | event.id |
Vendor.httpMessage.requestId | http.request.id |
Vendor.httpMessage.method | http.request.method |
Vendor.httpMessage.bytes | http.response.bytes |
Vendor.httpMessage.status | http.response.status_code |
Vendor.attackData.clientIP | source.address |
Vendor.geo.city | source.geo.city_name |
Vendor.geo.country | source.geo.country_iso_code |
source.address | source.ip |
Vendor.httpMessage.path | url.path |
Vendor.httpMessage.port | url.port |
Vendor.httpMessage.query | url.query |
Tag Fields Created by Parser asec-json
#Cps.version
#Vendor
#ecs.version
#event.dataset
#event.kind
#event.module
#event.outcome
#observer.type
Fields Identified by Parser asec-json
Source Field | CPS Field |
---|---|
source.address | client.address |
source.ip | client.ip |
Vendor.httpMessage.requestId | event.id |
Vendor.httpMessage.requestId | http.request.id |
Vendor.httpMessage.method | http.request.method |
Vendor.httpMessage.bytes | http.response.bytes |
Vendor.httpMessage.status | http.response.status_code |
Vendor.attackData.clientIP | source.address |
Vendor.geo.city | source.geo.city_name |
Vendor.geo.country | source.geo.country_iso_code |
source.address | source.ip |
Vendor.httpMessage.path | url.path |
Vendor.httpMessage.port | url.port |
Vendor.httpMessage.query | url.query |