Parsers and Generated Fields

Tag Fields Created by Parser apm-syslog
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser apm-syslog
Source FieldCPS Field
Vendor.clientIpclient.address
Vendor.continentclient.geo.continent_code
Vendor.countryclient.geo.country_iso_code
Vendor.stateclient.geo.region_name
Vendor.clientIpclient.ip
Vendor.bytesOutdestination.bytes
source.bytesnetwork.bytes
Vendor.bytesInsource.bytes
Vendor.useruser.name