Parsers and Generated Fields

Tag Fields Created by Parser asimily-iomt
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser asimily-iomt
Vendor FieldCPS FieldDescription
`event.category[]`ArrayNone
`event.type[]`ArrayNone
`host.ip[]`ArrayVendor.ipAddress
`device.manufacturer`CopiedVendor.manufacturer
`device.model.identifier`CopiedVendor.deviceModel
`event.id`CopiedVendor.alertId
`event.reason`CopiedVendor.context
`host.os.name`CopiedVendor.os
`@timestamp`ParsedVendor.dateTime
`ecs.version`StaticNone
`event.kind`StaticNone
`event.module`StaticNone
`host.mac[0]`TransformedVendor.macAddress
Vendor.manufacturerdevice.manufacturer 
Vendor.deviceModeldevice.model.identifier 
Vendor.alertIdevent.id 
Vendor.contextevent.reason 
Vendor.oshost.os.name