Parsers and Generated Fields

Tag Fields Created by Parser windows-dns
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser windows-dns
Source FieldLogScale Repository Field
Vendor.ResponseCodecode
Vendor.PacketIDdns.id
Vendor.QuestionNamedns.question.name
Vendor.QuestionTypedns.question.type
Vendor.PacketIDevent.id
Vendor.RemoteIPsource.ip