Parsers and Generated Fields

Tag Fields Created by Parser broadcom-proxysg
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser broadcom-proxysg
Source FieldCPS FieldDescriptionMapping
Client IP addressVendor.message.clientIp client.ip
HTTP request bytesVendor.message.csBytes http.request.bytes
HTTP request methodVendor.message.csMethod http.request.method
HTTP response content typeVendor.message.rsContentType http.response.mime_type
HTTP response status codeVendor.message.rsStatus http.response.status_code
HTTP version (extracted using regex)Vendor.message.rsVersion http.version
HTTP response bytesVendor.message.scBytes http.response.bytes
HTTP request referrerVendor.message.xCsRefererUri http.request.referrer