Field TypeTypeAvailabilityDescription
@id   
@ingesttimestamp   
@rawstring   
@timestamp   
@timestamp.nanos   
@timezone   
category   Category of the event, such as Alert, Request, IngestFeed, Fdr, Query, Action, and ScheduledSearch
#category   
#repo   
#severity   
message   Message of the alert or event
numberOfUsers   
orgId   Organization ID
severity   Severity of the event
subCategory   Subcategory of the event
timestamp   Timestamp in milliseconds of the event