Strata Logging Service
Events HTTPS Fields
Table of Contents
Expand All
|
Collapse All
Strata Logging Service Docs
Events HTTPS Fields
The following table identifies the Events field names that the Log Forwarding app
uses when you forward logs using the HTTPS log format.
|
HTTPS Name
|
Query Name
|
|---|---|
|
ApplicationAppCategory
| |
|
ApplicationAppSubcategory
| |
|
ApplicationExternalID
| |
|
ApplicationExternalName
| |
|
ApplicationID
| |
|
ApplicationName
| |
|
ApplicationProtectedAccount
| |
|
ApplicationRiskOfApp
| |
|
ApplicationSource
| |
|
ApplicationUsername
| |
|
BatchID
| |
|
BrowserExtensionAppLaunchURL
| |
|
BrowserExtensionAvailableLaunchTypes
| |
|
BrowserExtensionDescription
| |
|
BrowserExtensionDisabledReason
| |
|
BrowserExtensionEnabled
| |
|
BrowserExtensionHomepageURL
| |
|
BrowserExtensionHostPermissions
| |
|
BrowserExtensionID
| |
|
BrowserExtensionInstallType
| |
|
BrowserExtensionIsApp
| |
|
BrowserExtensionLaunchType
| |
|
BrowserExtensionMayDisable
| |
|
BrowserExtensionName
| |
|
BrowserExtensionOfflineEnabled
| |
|
BrowserExtensionOptionsURL
| |
|
BrowserExtensionPermissions
| |
|
BrowserExtensionShortName
| |
|
BrowserExtensionType
| |
|
BrowserExtensionUpdateURL
| |
|
BrowserExtensionVersion
| |
|
CertificateCreatedTime
| |
|
CertificateExpirationTime
| |
|
CertificateFingerprints
| |
|
CertificateIssuer
| |
|
CertificateSerialNumber
| |
|
CertificateSubject
| |
|
ClassificationCategory
| |
|
ClassificationMaliciousCategories
| |
|
ClassificationMITRE
| |
|
ClassificationReputation
| |
|
ClassificationSecurityCompliance
| |
|
ClassificationSeverity
| |
|
ClipboardFromURL
| |
|
ClipboardSelectedElement
| |
|
ContentCategories
| |
|
ContentLengthBytes
| |
|
ContentMIPMatchedLabel
| |
|
ContentScanEngine
| |
|
ContentSensitiveDataCategories
| |
|
ContentSourceElementSelector
| |
|
ContentSourceURL
| |
|
CortexDataLakeTenantID
| |
|
DeviceBrowserBrand
| |
|
DeviceBrowserType
| |
|
DeviceBrowserVersion
| |
|
DeviceUUID
| |
|
DeviceDiskEncryptionStatus
| |
|
DeviceEPPStatus
| |
|
DeviceExtensionVersion
| |
|
DeviceFirewallStatus
| |
|
DeviceGeoIPFromCityName
| |
|
DeviceGeoIPFromCountryName
| |
|
DeviceGeoIPFromLocationLatitude
| |
|
DeviceGeoIPFromLocationLongitude
| |
|
DeviceGroupsIDs
| |
|
DeviceGroupsNames
| |
|
DeviceHostname
| |
|
DeviceIPAddress
| |
|
DeviceMACAddresses
| |
|
DeviceModel
| |
|
DeviceOSAndroidBuild
| |
|
DeviceOSAndroidPatch
| |
|
DeviceOSAndroidRelease
| |
|
DeviceOSAndroidSDK
| |
|
DeviceOSiOSMajor
| |
|
DeviceOSiOSMinor
| |
|
DeviceOSiOSPatch
| |
|
DeviceOSmacOSBugfix
| |
|
DeviceOSmacOSBuild
| |
|
DeviceOSmacOSMajor
| |
|
DeviceOSmacOSMinor
| |
|
DeviceOSmacOSServer
| |
|
DeviceOSType
| |
|
DeviceOSWindowsBuild
| |
|
DeviceOSWindowsMajor
| |
|
DeviceOSWindowsMinor
| |
|
DeviceOSWindowsPatch
| |
|
DeviceOSWindowsProduct
| |
|
DeviceOSDisplayName
| |
|
DeviceRawUniversalID
| |
|
DeviceScreenLockStatus
| |
|
DeviceSerialNumber
| |
|
DeviceType
| |
|
DeviceUserAgent
| |
|
FileExtension
| |
|
FileIsEncrypted
| |
|
FileLocalPath
| |
|
FileMimeType
| |
|
FileName
| |
|
FileOperation
| |
|
FileOriginDownloadURL
| |
|
FileSHA256
| |
|
FileURL
| |
|
ID
| |
|
LogSource
| |
|
LogSourceGroupID
| |
|
DeviceSN
| |
|
DeviceName
| |
|
TimeReceived
| |
|
LogType
| |
|
NetworkClassifications
| |
|
NetworkFrameURL
| |
|
NetworkHTTPMethod
| |
|
NetworkHTTPStatus
| |
|
NetworkProtocol
| |
|
NetworkTabURL
| |
|
NetworkURL
| |
|
PageCaptureIsSecureScreenshot
| |
|
PageCaptureTriggeredByURL
| |
|
PageDevtoolsBlockReason
| |
|
PageTitle
| |
|
PincodeFailedAttempts
| |
|
PincodeRegistrationTime
| |
|
PlatformType
| |
|
PolicyAction
| |
|
PolicyBlockReason
| |
|
PolicyBypassReason
| |
|
PolicyIsMonitor
| |
|
PolicyIsSessionRecorded
| |
|
PolicyRuleDescription
| |
|
PolicyRuleID
| |
|
PostureBlockReason
| |
|
PostureBlockType
| |
|
PostureError
| |
|
PrintPrinterLocation
| |
|
PrintPrinterName
| |
|
ProcessCLIArgs
| |
|
ProcessImagePath
| |
|
ProcessParentProcess
| |
|
ProcessPID
| |
|
StateDeviceGroupEvaluation
| |
|
StateSignInRules
| |
|
SubtenantID
| |
|
Subtype
| |
|
TamperingType
| |
|
TenantID
| |
|
TimeGenerated
| |
|
TimeGeneratedHighResolution
| |
|
Timestamp
| |
|
TSGID
| |
|
Type
| |
|
UserEmail
| |
|
UserExternalID
| |
|
UserGroupsIDs
| |
|
UserGroupsNames
| |
|
UserID
| |
|
UserName
| |
|
UserTenantExternalID
| |
|
UserTenantID
| |
|
UserTenantName
| |
|
UserTSGID
| |
|
VendorName
|