Skip to content

Latest commit

 

History

History
188 lines (188 loc) · 23.1 KB

n_parsers.md

File metadata and controls

188 lines (188 loc) · 23.1 KB
Old Parser Name New-Scale Parser Name
n-cef-mcafee-alert mcafee-esm-csv-alert-trigger-success-mcafeensmopmnsmp3
n-forwarded-cef-4611 microsoft-evsecurity-cef-endpoint-notification-success-esm
n-forwarded-cef-4624 microsoft-evsecurity-kv-endpoint-success-mcafee
n-forwarded-cef-4625 microsoft-evsecurity-kv-endpoint-login-fail-4326304625
n-forwarded-cef-4634 microsoft-evsecurity-cef-endpoint-logout-success-4634-1
n-forwarded-cef-4648 microsoft-evsecurity-cef-user-switch-success-4648-2
n-forwarded-cef-4662 microsoft-evsecurity-cef-ds-object-activity-success-4662-2
n-forwarded-cef-4663 microsoft-evsecurity-cef-file-write-success-43
n-forwarded-cef-4672 microsoft-evsecurity-kv-user-privilege-use-success-4672-1
n-forwarded-cef-4673 microsoft-evsecurity-cef-user-privilege-use-success-esm
n-forwarded-cef-4688 microsoft-evsecurity-kv-process-create-success-26304688
n-forwarded-cef-4722 microsoft-evsecurity-cef-user-enable-success-4722-2
n-forwarded-cef-4724 microsoft-evsecurity-kv-user-password-reset-success-4724-2
n-forwarded-cef-4725 microsoft-evsecurity-kv-user-disable-success-4725-3
n-forwarded-cef-4740 microsoft-evsecurity-kv-user-delete-fail-26304740
n-forwarded-cef-4768 microsoft-evsecurity-json-endpoint-mcafeeesm
n-forwarded-cef-4769 microsoft-evsecurity-kv-endpoint-login-4769-9
n-forwarded-cef-4770 microsoft-evsecurity-kv-endpoint-login-mcafee
n-forwarded-cef-4771 microsoft-evsecurity-kv-endpoint-login-fail-mcafeeesm
n-forwarded-cef-4776 microsoft-evsecurity-kv-endpoint-login-mcafeeesm
n-forwarded-cef-5136 microsoft-evsecurity-cef-ds-object-modify-success-43
n-forwarded-cef-528 microsoft-evsecurity-cef-endpoint-success-528
n-forwarded-cef-540 microsoft-evsecurity-kv-endpoint-login-success-mcafee
n-forwarded-cef-552 microsoft-evsecurity-kv-success-esm
n-forwarded-cef-680 microsoft-windows-kv-endpoint-login-esm
n-forwarded-cef-asa-nap-vpn-end cisco-asa-kv-vpn-logout-success-713259
n-forwarded-cef-asa-nap-vpn-start cisco-asa-kv-vpn-login-success-privateipassigned
n-forwarded-cef-asa-svc-vpn-end cisco-asa-kv-vpn-logout-success-113019
n-forwarded-cef-asa-svc-vpn-start cisco-asa-kv-vpn-login-success-addressassigned
n-forwarded-cef-aventail-vpn-end dell-sw-cef-vpn-logout-success-sessionend
n-forwarded-cef-aventail-vpn-start dell-sw-cef-vpn-login-success-userloginandzoneassignment
n-forwarded-cef-barracuda-email barracuda-esg-cef-app-activity-success-scan
n-forwarded-cef-damballa-alert damballa-failsafe-cef-alert-trigger-success-421
n-forwarded-cef-dns-update microsoft-windows-kv-dhcp-session-success-mcafeeesm
n-forwarded-cef-failed-logon-2003 microsoft-windows-kv-endpoint-login-fail-failure
n-forwarded-cef-fidelis-alert fidelis-fxps-cef-alert-trigger-success-429
n-forwarded-cef-fireeye-alert fireeye-networksecurity-leef-alert-trigger-success-2835433003
n-forwarded-cef-infoblox-dhcp infoblox-bddi-cef-endpoint-login-success-addedmap
n-forwarded-cef-juniper-vpn-end juniper-ps-kv-vpn-logout-success-mcafee
n-forwarded-cef-juniper-vpn-end-2 juniper-ps-cef-vpn-logout-success-vpntunnelingended
n-forwarded-cef-juniper-vpn-start juniper-ps-kv-vpn-login-success-secureaccess
n-forwarded-cef-juniper-vpn-start-2 juniper-ps-cef-vpn-login-success-vpntunnelingstarted
n-forwarded-cef-juniper-vpn-timeout juniper-ps-cef-vpn-logout-success-secureaccess
n-forwarded-cef-lastline vmware-nsxatp-cef-alert-trigger-success-mcafee
n-forwarded-cef-mcafee-epo mcafee-es-kv-alert-trigger-success-367
n-forwarded-cef-mcafee-epo-dlp mcafee-dlp-kv-alert-trigger-success-359
n-forwarded-cef-mcafee-epo-usb mcafee-es-kv-file-write-success-removalstorage
n-forwarded-cef-member-added-2008 microsoft-evsecurity-kv-group-member-add-success-memberaddedtosecenabled
n-forwarded-cef-member-removed-2008 microsoft-evsecurity-cef-group-member-remove-success-securityenabled
n-forwarded-cef-nac-logon cisco-ise-cef-endpoint-login-success-mcafeeesm
n-forwarded-cef-symantec-epp-alert symantec-endpointprotection-cef-alert-trigger-success-5440
n-forwarded-cef-trendmicro-security-alert-2 trendmicro-ddi-cef-alert-trigger-success-473-2
n-forwarded-cef-trendmicro-system-event trendmicro-iws-cef-app-activity-success-6494165128
n-forwarded-cef-trendmicro-system-event-1 trendmicro-iws-cef-app-activity-success-6494263011
n-forwarded-cef-trendmicro-web-activity-1 trendmicro-iws-cef-http-session-web
n-forwarded-cef-trendmicro-web-activity-2 trendmicro-iws-cef-http-session-web-1
n-forwarded-cef-trendmicro-web-activity-3 trendmicro-iws-cef-http-session-mcafeeesm
n-forwarded-juniper-failed-vpn-login juniper-ps-cef-vpn-login-fail-secureaccess-1
n-forwarded-juniper-vpn-close juniper-ps-cef-vpn-logout-success-closedconnection
n-forwarded-juniper-vpn-login juniper-ps-cef-vpn-login-success-userlogin
n-forwarded-juniper-vpn-login-2 juniper-ps-cef-vpn-login-success-secureaccess-2
n-forwarded-juniper-vpn-login-3 juniper-ps-cef-vpn-login-success-userconnected
n-forwarded-juniper-vpn-logout juniper-ps-cef-vpn-logout-success-userlogout
n-forwarded-juniper-vpn-open juniper-ps-cef-vpn-login-success-openedconnection
n-forwarded-juniper-vpn-realm juniper-ps-cef-vpn-login-success-hostcheckerpolicy
n-forwarded-juniper-vpn-realm-1 juniper-ps-cef-vpn-login-success-secureaccess-3
n-mwg-proxy mcafee-wg-kv-http-session-mcafeewg
n-proofpoint-email-alert proofpoint-tap-cef-alert-trigger-success-proofpoint
nagios-host-flapping-itops-alert nagios-n-str-app-notification-hostflappingalert
nagios-host-itops-alert nagios-n-str-endpoint-notification-hostalert
nagios-host-itops-notification nagios-n-str-app-notification-hostnotification
nagios-service-flapping-itops-alert nagios-n-str-app-notification-serviceflappingalert
nagios-service-itops-alert nagios-n-str-app-notification-alert
nagios-service-itops-notification nagios-n-str-app-notification-servicenotification
named-dns-query infoblox-bddi-str-dns-request-success-dnsquery
named-dns-query-1 unix-unixnamed-str-dns-request-namedquery
named-dns-query-2 unix-unixnamed-str-network-notification-notifyforzone
named-dns-query-3 unix-unixnamed-str-app-notification-transfercompleted
named-dns-query-4 unix-unixnamed-str-app-notification-namedconnected
named-dns-query-5 unix-unixnamed-str-app-notification-transferredserial
named-dns-query-6 unix-unixnamed-str-app-notification-signature
named-dns-query-7 unix-unixnamed-str-network-notification-transferstarted
named-dns-query-8 unix-unixnamed-str-app-notification-zonenotify
nas-share-access synologynas-s-kv-share-access-success-fileevent
nas-share-access-1 synologynas-s-str-share-access-success-connection
ncp-auth-failed ncp-n-str-app-authentication-fail-verificationfailed
ncp-vpn-end ncp-n-str-vpn-logout-success-disconnect
ncp-vpn-start ncp-n-kv-vpn-login-success-connect
netdoc-app-activity-1 netdoc-n-json-file-activity-success
netdocs-app-activity "netdocs-n-xml-app-activity-success-appactivity
netdocs-file-operations netdocs-n-kv-file-success-storageobject
netiq-app-login netiq-netiqim-json-app-login-success-usersession
netmotion-auth-successful netmotionwireless-nw-str-endpoint-authentication-success-foruser
netmotion-set-ip netmotionwireless-nw-json-endpoint-authentication-success-vaddress
netmotion-vpn-end netmotionwireless-nw-kv-vpn-logout-success-disconnect
netmotion-vpn-end-1 netmotionwireless-nw-kv-vpn-logout-success-close
netmotion-vpn-finish-1 netmotionwireless-nw-kv-vpn-logout-success-finish
netmotion-vpn-start netmotionwireless-nw-kv-vpn-login-success-logdatetime
netmotion-vpn-start-1 netmotionwireless-nw-kv-vpn-login-success-mobilityanalytics
netmotion-vpn-stop-1 netmotionwireless-nw-kv-vpn-logout-success-stop
netmotion-vpn-system-info netmotionwireless-nw-kv-app-notification-update
netmotion-vpn-system-info-1 netmotionwireless-nw-kv-app-notification-roam
netscalar-info-1 citrix-cgateway-kv-app-notification-hdr_removed
netscalar-info-2 citrix-cgateway-kv-vpn-authentication-copied_nsb
netscalar-info-3 citrix-cgateway-str-app-notification-svr_output_handler
netscalar-remote-access citrix-cgateway-str-endpoint-login-success-initialization
netscalar-remote-access-1 citrix-cgateway-str-http-session-success-sslvpn
netscalar-remote-access-2 citrix-cgateway-cef-http-session-success-httprequest
netscaler-cef-failed-vpn-login citrix-cgateway-cef-vpn-login-fail-loginfailed
netscaler-cef-vpn-end citrix-cgateway-cef-vpn-logout-success-netscaler
netscaler-cef-vpn-start citrix-cgateway-cef-vpn-login-success-login
netscaler-network-connection citrix-netscalerwaf-str-network-traffic-default
netscaler-network-connection-2 citrix-netscalerwaf-str-network-traffic-bytes
netscaler-network-connection-3 citrix-netscalerwaf-str-network-traffic-ssl-handshake
netscaler-network-system-info citrix-appfw-str-app-notification-message
netscaler-process-created citrix-cgateway-str-process-create-success-command
netscaler-ssllog-performance cisco-gateway-str-ssl-traffic-ssllog
netscaler-tcp-performance citrix-cgateway-str-network-close-tcpconn
netscaler-web-activity citrix-weblogging-str-http-session-5991
netscaler-web-activity-1 citrix-weblogging-str-http-session-success-ssois
netscope-dlp-alert-activity netskope-sc-sk4-alert-trigger-success-dlp
netskope-activity netskope-sc-json-app-activity-success-sessionbegin
netskope-alert netskope-sc-json-alert-trigger-success-sessionbegin
netskope-app-activity netskope-sc-json-app-activity-success-browsersessionid
netskope-app-activity-1 netskope-sc-json-app-activity-success-propertyupdated
netskope-app-activity-2 netskope-sc-json-app-activity-success-browsersession
netskope-dlp-alert netskope-sc-json-alert-trigger-success-yes
netskope-dlp-alert-2 netskope-sc-json-alert-trigger-success-dlp
netskope-login netskope-sc-json-app-login-success-login
netskope-login-1 netskope-sc-json-app-login-success-loginsuccess
netskope-logout-1 netskope-sc-sk4-app-logout-success-logout
netskope-network-connection netskope-sc-json-network-traffic-traffictype
netskope-network-connection-1 netskope-sc-json-app-activity-appactivity
netskope-security-alert netskope-sc-json-alert-trigger-success-alertname
netskope-security-alert-1 netskope-sc-json-alert-trigger-success-compromised
netskope-system-info netskope-sc-sk4-app-notification-success-auditevent
netskope-web-activity netskope-sc-str-http-session-success-transaction
netwrix-ad-account-disabled netwrix-auditor-cef-user-disable-success-accountdisabled
netwrix-ad-account-lockout netwrix-auditor-cef-user-lock-success-useraccount
netwrix-ad-account-unlocked netwrix-auditor-cef-user-disable-success-accountunlocked
netwrix-ad-ds-access netwrix-auditor-cef-ds-object-activity-success-netwrix
netwrix-ad-member-added netwrix-auditor-cef-group-member-add-success-groupadded
netwrix-ad-member-added-2 netwrix-auditor-cef-group-member-add-success-groupmodified
netwrix-ad-member-removed netwrix-auditor-cef-group-member-remove-success-removed
netwrix-ad-password-reset netwrix-auditor-cef-user-password-reset-success-administrativepasswordreset
netwrix-app-activity-1 "netwrix-auditor-xml-app-activity-success-1001
netwrix-app-activity-2 "netwrix-auditor-xml-app-activity-success-1002
netwrix-app-activity-3 "netwrix-auditor-xml-app-activity-success-1003
netwrix-app-activity-4 netwrix-auditor-kv-app-activity-success-vmware
netwrix-app-activity-5 netwrix-auditor-cef-app-activity-success-settingschanged
netwrix-app-login netwrix-auditor-cef-app-login-success-successfullogon
netwrix-db-activity netwrix-auditor-kv-database-who
netwrix-failed-app-login netwrix-auditor-cef-app-login-fail-failedlogon
netwrix-file-activity "netwrix-auditor-xml-file-success-action
netwrix-group-policy-change netwrix-auditor-cef-ds-object-activity-success-grouppolicy
nexthink-security-alert nexthink-nexthink-kv-alert-trigger-success-source
nexthink-security-alert-1 nexthink-nexthink-kv-alert-trigger-success-user
nic-4688 microsoft-evsecurity-kv-process-create-success-mswineventlog4688
nic-4770 microsoft-evsecurity-kv-endpoint-login-success-4770-1
nic-5136 microsoft-evsecurity-mix-ds-object-modify-success-5136
nic-5137 microsoft-evsecurity-kv-ds-object-activity-success-5137
nic-5141 microsoft-evsecurity-kv-ds-object-activity-success-5141
nic-528 microsoft-evsecurity-csv-endpoint-login-success-528
nic-627 microsoft-evsecurity-kv-user-password-modify-627security
nic-member-removed-2003 microsoft-evsecurity-kv-group-member-remove-success-groupmemberremoved
nic-member-removed-2008 microsoft-evsecurity-kv-group-member-remove-success-memberwasremoved
nnt-ct-alert nnt-ct-cef-app-notification-agentalert
nnt-ct-app-login nnt-ct-cef-app-login-success-successfullogon
nnt-ct-config-change nnt-ct-cef-configuration-modify-plannedchange
nnt-ct-config-change-1 nnt-ct-cef-configuration-modify-unplannedchange
nnt-ct-failed-app-login nnt-ct-cef-app-login-fail-401
nnt-ct-system-event nnt-ct-cef-app-notification-911
nnt-ct-system-event-1 nnt-ct-cef-app-notification-912
nnt-ct-system-info nnt-ct-cef-app-notification-315
nnt-ct-system-info-1 nnt-ct-cef-app-notification-908
nokia-vitalqip-computer-logon nokia-vqip-kv-dhcp-session-success-lucentdhcpservice
nokia-vitalqip-computer-logon-1 nokia-vqip-kv-dhcp-session-success-lucentdhcpservice-1
nsx-network-connection-failed vmware-nsx-str-network-traffic-fail-term
nsx-network-connection-successful vmware-nsx-str-network-traffic-success-matchpass
nutanix-file-delete nutanix-us-str-file-delete-success-smb
nutanix-file-read nutanix-us-str-file-read-success-smb
nutanix-file-write nutanix-us-str-file-write-success-smb
nutanix-file-write-1 nutanix-us-str-file-write-success-filecreate
nutanix-file-write-2 nutanix-us-str-file-write-success-rename
nutanix-file-write-3 nutanix-us-str-file-write-success-directorycreate
nxlog-json-4726 microsoft-evsecurity-json-user-delete-success-4726-1