Azure-Sentinel/Sample Data/CEF/IllumioCore

2 строки
1.2 KiB
Plaintext

CEF:0|Illumio|PCE|22.2.0|user.login.success|User Login Success|1|rt=May 11 2022 07:11:59.900 +0000 dvchost=demohost.local duser=system dst=10.6.5.4 outcome=success cat=audit_events request=/api/v2/users/login_from_jwt requestMethod=POST reason=204 cs2= cs2Label=resource_changes cs4=[{"uuid":"6ee8aec5-c7bb-4fb3-b9e4-86e883145126","notification_type":"user.pce_session_created","info":{"reason":"user_login","user":{"href":"/users/1","username":"sanitized@sanitized.com"}}}] cs4Label=notifications cn2=2 cn2Label=schema-version cs1Label=event_href cs1=/system_events/6ee8aec5-c7bb-4fb3-b9e4-86e883145126
CEF:0|Illumio|PCE|22.2.0|user.logout.success|User Logout Success|1|rt=May 11 2022 07:11:59.900 +0000 dvchost=demohost.local duser=system dst=10.6.5.4 outcome=success cat=audit_events request=/api/v2/users/logout_from_jwt requestMethod=POST reason=204 cs2= cs2Label=resource_changes cs4=[{"uuid":"7dcf4fdb-0f14-4f97-b922-3053dd1fbc5f","notification_type":"user.pce_session_terminated","info":{"reason":"user_logout","user":{"href":"/users/1","username":"sanitized@sanitized.com"}}}] cs4Label=notifications cn2=2 cn2Label=schema-version cs1Label=event_href cs1=/system_events/42019177-b2a0-404b-8d4c-86dccfe2566e