Update ASimTester.csv
This commit is contained in:
Родитель
1d76b656ec
Коммит
4bed20ece3
|
@ -16,9 +16,9 @@ EventOriginalSeverity,string,Optional,NetworkSession,,,
|
|||
EventOriginalUid,string,Optional,NetworkSession,,,
|
||||
EventOriginalType,string,Optional,NetworkSession,,,
|
||||
EventOriginalSubType,string,Optional,NetworkSession,,,
|
||||
EventProduct,string,Mandatory,NetworkSession,Enumerated,Vectra Stream|NSGFlow|Fireware|VPC|Azure Defender for IoT|Azure Firewall|M365 Defender for Endpoint|Sysmon|Sysmon for Linux|Windows Firewall|WireData|ZIA Firewall|CDL|PanOS|VMConnection|Meraki MX,
|
||||
EventProduct,string,Mandatory,NetworkSession,Enumerated,SDP|Vectra Stream|NSGFlow|Fireware|VPC|Azure Defender for IoT|Azure Firewall|M365 Defender for Endpoint|Sysmon|Sysmon for Linux|Windows Firewall|WireData|ZIA Firewall|CDL|PanOS|VMConnection|Meraki MX,
|
||||
EventProductVersion,string,Optional,NetworkSession,,,
|
||||
EventVendor,string,Mandatory,NetworkSession,Enumerated,Palo Alto|Microsoft|Zscaler|AWS|Vectra AI|WatchGuard|Cisco,
|
||||
EventVendor,string,Mandatory,NetworkSession,Enumerated,AppGate|Palo Alto|Microsoft|Zscaler|AWS|Vectra AI|WatchGuard|Cisco,
|
||||
EventSchema,string,Mandatory,NetworkSession,Enumerated,NetworkSession,
|
||||
EventSchemaVersion,string,Mandatory,NetworkSession,SchemaVersion,,
|
||||
EventReportUrl,string,Optional,NetworkSession,URL,,
|
||||
|
@ -29,7 +29,7 @@ DvcDomain,string,Recommended,NetworkSession,Domain,,
|
|||
DvcDomainType,string,Conditional,NetworkSession,Enumerated,Windows|FQDN|ResourceGroup,DvcDomain
|
||||
DvcFQDN,string,Optional,NetworkSession,FQDN,,
|
||||
DvcId,string,Optional,NetworkSession,,,
|
||||
DvcIdType,string,Conditional,NetworkSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,DvcId
|
||||
DvcIdType,string,Conditional,NetworkSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,DvcId
|
||||
DvcMacAddr,string,Optional,NetworkSession,MAC address,,
|
||||
DvcZone,string,Optional,NetworkSession,,,
|
||||
DvcDescription,string,Optional,NetworkSession,,,
|
||||
|
@ -45,7 +45,7 @@ DstDomain,string,Recommended,NetworkSession,Domain,,
|
|||
DstDomainType,string,Conditional,NetworkSession,Enumerated,Windows|FQDN|ResourceGroup,DstDomain
|
||||
DstFQDN,string,Optional,NetworkSession,FQDN,,
|
||||
DstDvcId,string,Optional,NetworkSession,,,
|
||||
DstDvcIdType,string,Conditional,NetworkSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,DstDvcId
|
||||
DstDvcIdType,string,Conditional,NetworkSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,DstDvcId
|
||||
DstDeviceType,string,Optional,NetworkSession,Enumerated,Computer|Mobile Device|IOT Device|Other,
|
||||
DstUserId,string,Optional,NetworkSession,,,
|
||||
DstUserIdType,string,Conditional,NetworkSession,Enumerated,SID|UID|AADID|OktaId|AWSId,DstUserId
|
||||
|
@ -74,7 +74,7 @@ SrcDomain,string,Recommended,NetworkSession,Domain,,
|
|||
SrcDomainType,string,Conditional,NetworkSession,Enumerated,Windows|FQDN|ResourceGroup,SrcDomain
|
||||
SrcFQDN,string,Optional,NetworkSession,FQDN,,
|
||||
SrcDvcId,string,Optional,NetworkSession,,,
|
||||
SrcDvcIdType,string,Conditional,NetworkSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,SrcDvcId
|
||||
SrcDvcIdType,string,Conditional,NetworkSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,SrcDvcId
|
||||
SrcDeviceType,string,Optional,NetworkSession,Enumerated,Computer|Mobile Device|IOT Device|Other,
|
||||
SrcUserId,string,Optional,NetworkSession,,,
|
||||
SrcUserIdType,string,Conditional,NetworkSession,Enumerated,SID|UID|AADID|OktaId|AWSId,SrcUserId
|
||||
|
@ -160,7 +160,7 @@ DstDeviceType,string,Optional,Dns,Enumerated,Computer|Mobile Device|IOT Device|O
|
|||
DstDomain,string,Optional,Dns,Domain,,
|
||||
DstDomainType,string,Conditional,Dns,Enumerated,Windows|FQDN|ResourceGroup,DstDomain
|
||||
DstDvcId,string,Optional,Dns,,,
|
||||
DstDvcIdType,string,Conditional,Dns,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,DstDvcId
|
||||
DstDvcIdType,string,Conditional,Dns,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,DstDvcId
|
||||
DstFQDN,string,Optional,Dns,FQDN,,
|
||||
DstGeoCity,string,Optional,Dns,City,,
|
||||
DstGeoCountry,string,Optional,Dns,Country,,
|
||||
|
@ -214,7 +214,7 @@ SrcDeviceType,string,Optional,Dns,Enumerated,Computer|Mobile Device|IOT Device|O
|
|||
SrcDomain,string,Recommended,Dns,Domain,,
|
||||
SrcDomainType,string,Conditional,Dns,Enumerated,Windows|FQDN|ResourceGroup,SrcDomain
|
||||
SrcDvcId,string,Optional,Dns,,,
|
||||
SrcDvcIdType,string,Conditional,Dns,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,SrcDvcId
|
||||
SrcDvcIdType,string,Conditional,Dns,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,SrcDvcId
|
||||
SrcFQDN,string,Optional,Dns,FQDN,,
|
||||
SrcGeoCity,string,Optional,Dns,City,,
|
||||
SrcGeoCountry,string,Optional,Dns,Country,,
|
||||
|
@ -272,7 +272,7 @@ DvcDomain,string,Recommended,WebSession,Domain,,
|
|||
DvcDomainType,string,Conditional,WebSession,Enumerated,Windows|FQDN|ResourceGroup,DvcDomain
|
||||
DvcFQDN,string,Optional,WebSession,FQDN,,
|
||||
DvcId,string,Optional,WebSession,,,
|
||||
DvcIdType,string,Conditional,WebSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,DvcId
|
||||
DvcIdType,string,Conditional,WebSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,DvcId
|
||||
DvcMacAddr,string,Optional,WebSession,MAC address,,
|
||||
DvcZone,string,Optional,WebSession,,,
|
||||
DvcDescription,string,Optional,WebSession,,,
|
||||
|
@ -287,7 +287,7 @@ DstDomain,string,Optional,WebSession,Domain,,
|
|||
DstDomainType,string,Conditional,WebSession,Enumerated,Windows|FQDN|ResourceGroup,DstDomain
|
||||
DstFQDN,string,Optional,WebSession,FQDN,,
|
||||
DstDvcId,string,Optional,WebSession,,,
|
||||
DstDvcIdType,string,Conditional,WebSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,DstDvcId
|
||||
DstDvcIdType,string,Conditional,WebSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,DstDvcId
|
||||
DstDeviceType,string,Optional,WebSession,Enumerated,Computer|Mobile Device|IOT Device|Other,
|
||||
DstUserId,string,Optional,WebSession,,,
|
||||
DstUserIdType,string,Conditional,WebSession,Enumerated,SID|UIS|AADID|OktaId|AWSId,DstUserId
|
||||
|
@ -316,7 +316,7 @@ SrcDomain,string,Recommended,WebSession,Domain,,
|
|||
SrcDomainType,string,Conditional,WebSession,Enumerated,Windows|FQDN|ResourceGroup,SrcDomain
|
||||
SrcFQDN,string,Optional,WebSession,FQDN,,
|
||||
SrcDvcId,string,Optional,WebSession,,,
|
||||
SrcDvcIdType,string,Conditional,WebSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,SrcDvcId
|
||||
SrcDvcIdType,string,Conditional,WebSession,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,SrcDvcId
|
||||
SrcDeviceType,string,Optional,WebSession,Enumerated,Computer|Mobile Device|IOT Device|Other,
|
||||
SrcUserId,string,Optional,WebSession,,,
|
||||
SrcUserIdType,string,Conditional,WebSession,Enumerated,SID|UIS|AADID|OktaId|AWSId|MD4IoTid,SrcUserId
|
||||
|
@ -419,7 +419,7 @@ DvcDomainType,string,Recommended,Authentication,Enumerated,Windows|FQDN|Resource
|
|||
DvcFQDN,string,Optional,Authentication,FQDN,,
|
||||
DvcHostname,string,Recommended,Authentication,Hostname,,
|
||||
DvcId,string,Optional,Authentication,,,
|
||||
DvcIdType,string,Optional,Authentication,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,
|
||||
DvcIdType,string,Optional,Authentication,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,
|
||||
DvcInterface,string,Optional,Authentication,,,
|
||||
DvcIpAddr,string,Recommended,Authentication,IP Address,,
|
||||
DvcMacAddr,string,Optional,Authentication,MAC address,,
|
||||
|
@ -455,7 +455,7 @@ LogonTarget,string,Optional,Authentication,,,
|
|||
SrcDomain,string,Optional,Authentication,Domain,,
|
||||
SrcDomainType,string,Conditional,Authentication,Enumerated,Windows|FQDN|ResourceGroup,SrcDomain
|
||||
SrcDvcId,string,Optional,Authentication,,,
|
||||
SrcDvcIdType,string,Conditional,Authentication,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,SrcDvcId
|
||||
SrcDvcIdType,string,Conditional,Authentication,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,SrcDvcId
|
||||
SrcDvcOs,string,Optional,Authentication,,,
|
||||
SrcDvcType,string,Optional,Authentication,Enumerated,Computer|Mobile Device|IOT Device|Other,
|
||||
SrcFQDN,string,Optional,Authentication,FQDN,,
|
||||
|
@ -473,7 +473,7 @@ TargetAppType,string,Optional,Authentication,Enumerated,Process|Service|Resource
|
|||
TargetDomain,string,Recommended,Authentication,,,
|
||||
TargetDomainType,string,Conditional,Authentication,Enumerated,Windows|FQDN|ResourceGroup,TargetDomain
|
||||
TargetDvcId,string,Optional,Authentication,,,
|
||||
TargetDvcIdType,string,Conditional,Authentication,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,TargetDvcId
|
||||
TargetDvcIdType,string,Conditional,Authentication,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,TargetDvcId
|
||||
TargetDvcOs,string,Optional,Authentication,,,
|
||||
TargetDvcType,string,Optional,Authentication,Enumerated,Computer|Mobile Device|IOT Device|Other,
|
||||
TargetFQDN,string,Optional,Authentication,FQDN,,
|
||||
|
@ -600,7 +600,7 @@ DvcFQDN,string,Optional,ProcessEvent,FQDN,,
|
|||
DvcHostname,string,Recommended,ProcessEvent,Hostname,,
|
||||
DvcHostname,string,Recommended,ProcessEvent,Hostname,,
|
||||
DvcId,string,Optional,ProcessEvent,,,
|
||||
DvcIdType,string,Optional,ProcessEvent,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|Other,
|
||||
DvcIdType,string,Optional,ProcessEvent,Enumerated,AzureResourceId|MDEid|MD4IoTid|VMConnectionId|AwsVpcId|VectraId|AppGateId|Other,
|
||||
DvcInterface,string,Optional,ProcessEvent,,,
|
||||
DvcIpAddr,string,Recommended,ProcessEvent,IP Address,,
|
||||
DvcMacAddr,string,Optional,ProcessEvent,MAC address,,
|
||||
|
|
|
Загрузка…
Ссылка в новой задаче