From 12f3584ed0ca819d812aa25a57059b2df47b7309 Mon Sep 17 00:00:00 2001 From: Priya Rammohan Date: Thu, 7 May 2020 10:45:00 -0500 Subject: [PATCH 1/2] add, modify field names --- .../graylog/schema/GraylogSchemaFields.java | 27 ++++++++++++++++--- 1 file changed, 23 insertions(+), 4 deletions(-) diff --git a/graylog2-server/src/main/java/org/graylog/schema/GraylogSchemaFields.java b/graylog2-server/src/main/java/org/graylog/schema/GraylogSchemaFields.java index bc389fbefea3..ed496ba1d138 100644 --- a/graylog2-server/src/main/java/org/graylog/schema/GraylogSchemaFields.java +++ b/graylog2-server/src/main/java/org/graylog/schema/GraylogSchemaFields.java @@ -19,7 +19,11 @@ /** * Field names used in the standard Graylog Schema. */ + + + public class GraylogSchemaFields { + public static final String FIELD_USER_ID = "user_id"; public static final String FIELD_USER_TYPE = "user_type"; public static final String FIELD_ASSOCIATED_USER_REFERENCE = "associated_user_reference"; @@ -33,20 +37,35 @@ public class GraylogSchemaFields { public static final String FIELD_SOURCE_GEO_COUNTRY_NAME = "source_geo_country_name"; public static final String FIELD_SOURCE_GEO_COORDINATES = "source_geo_coordinates"; public static final String FIELD_SESSION_ID = "session_id"; - public static final String FIELD_EVENT_VENDOR_DESCRIPTION = "event_vendor_description"; - public static final String FIELD_EVENT_VENDOR_ACTION = "event_vendor_action"; public static final String FIELD_EVENT_ERROR_DESCRIPTION = "event_error_description"; public static final String FIELD_TIMESTAMP = "timestamp"; public static final String FIELD_SOURCE_AS_NUMBER = "source_as_number"; public static final String FIELD_SOURCE_AS_ORGANIZATION_NAME = "source_as_organization_name"; public static final String FIELD_SOURCE_AS_IP = "source_as_ip"; public static final String FIELD_SOURCE_AS_DOMAIN = "source_as_domain"; - public static final String FIELD_EVENT_VENDOR_SEVERITY_DESCRIPTION = "event_vendor_severity_description"; public static final String FIELD_THREAT_DETECTED = "threat_detected"; - public static final String FIELD_EVENT_UID = "event_uid"; public static final String FIELD_SERVICE_VERSION = "service_version"; public static final String FIELD_TARGET_USER_NAME = "target_user_name"; public static final String FIELD_TARGET_USER_ID = "target_user_id"; public static final String FIELD_ASSOCIATED_USER_NAME = "associated_user_name"; public static final String FIELD_ASSOCIATED_USER_ID = "associated_user_id"; + public static final String FIELD_EVENT_UID = "event_uid"; + public static final String FIELD_EVENT_SOURCE_PRODUCT = "event_source_product"; + + public static final String FIELD_APPLICATION_SSO_SIGNONMODE = "application_sso_signonmode"; + public static final String FIELD_APPLICATION_SSO_TARGET_NAME = "application_sso_target_name"; + + public static final String FIELD_VENDOR_EVENT_ACTION = "vendor_event_action"; + public static final String FIELD_VENDOR_EVENT_DESCRIPTION = "vendor_event_description"; + public static final String FIELD_VENDOR_EVENT_SEVERITY = "vendor_event_severity"; + public static final String FIELD_VENDOR_EVENT_OUTCOME = "vendor_event_outcome"; + public static final String FIELD_VENDOR_EVENT_OUTCOME_REASON = "vendor_event_outcome_reason"; + public static final String FIELD_VENDOR_SEVERITY_DESCRIPTION = "vendor_severity_description"; + public static final String FIELD_VENDOR_THREAT_SUSPECTED = "vendor_threat_suspected"; + public static final String FIELD_VENDOR_TRANSACTION_TYPE = "vendor_transaction_type"; + public static final String FIELD_VENDOR_TRANSACTION_ID = "vendor_transaction_id"; + public static final String FIELD_VENDOR_USER_TYPE = "vendor_user_type"; + + + } From fa022d3016a4866ef4ef3d389a26ece7b7a32a2d Mon Sep 17 00:00:00 2001 From: Priya Date: Thu, 7 May 2020 11:50:45 -0500 Subject: [PATCH 2/2] Update graylog2-server/src/main/java/org/graylog/schema/GraylogSchemaFields.java Co-authored-by: Rob Curtis <6466251+waab76@users.noreply.github.com> --- .../src/main/java/org/graylog/schema/GraylogSchemaFields.java | 1 - 1 file changed, 1 deletion(-) diff --git a/graylog2-server/src/main/java/org/graylog/schema/GraylogSchemaFields.java b/graylog2-server/src/main/java/org/graylog/schema/GraylogSchemaFields.java index ed496ba1d138..f54262dc62cd 100644 --- a/graylog2-server/src/main/java/org/graylog/schema/GraylogSchemaFields.java +++ b/graylog2-server/src/main/java/org/graylog/schema/GraylogSchemaFields.java @@ -25,7 +25,6 @@ public class GraylogSchemaFields { public static final String FIELD_USER_ID = "user_id"; - public static final String FIELD_USER_TYPE = "user_type"; public static final String FIELD_ASSOCIATED_USER_REFERENCE = "associated_user_reference"; public static final String FIELD_USER_NAME = "user_name"; public static final String FIELD_HTTP_USER_AGENT = "http_user_agent";