Parsers and Generated Fields

Tag Fields Created by Parser citrix-netscaler-syslog
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser citrix-netscaler-syslog
Source FieldLogScale Repository Field
Vendor.Clientclient.ip
Vendor.ClientIPclient.ip
Vendor.ClientPortclient.port
destination.ipdestination.address
Vendor.Totaldestination.bytes
Vendor.Destinationdestination.ip
Vendor.Endevent.end
Vendor.endTimeevent.end
Vendor.Startevent.start
Vendor.startTimeevent.start
source.ipsource.address
Vendor.Totalsource.bytes
Vendor.Sourcesource.ip
Vendor.Useruser.name
Tag Fields Created by Parser citrix-netscaler-waf-cef
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser citrix-netscaler-waf-cef
Source FieldLogScale Repository Field
Vendor.actevent.action
Vendor.cn1event.id
cef.severityevent.severity
Vendor.cn2http.request.id
Vendor.methodhttp.request.method
Vendor.cs1rule.name
Vendor.srcsource.address
Vendor.srcsource.ip
Vendor.sptsource.port
Vendor.requesturl.original