EVENT VMSECURE fields
Name | (Filter) | Tag | CEF Name | Description |
|---|---|---|---|---|
VMSECCAT | (EGNX) | Cat | cat | |
VMSSYSID | (EGNX) | VMSysid | VM System Id | |
VMSSYS | (EGNX) | VMSystem | VM System Id | |
VMSDATE | (EGNX) | VMdate | Date | |
VMSTIME | (EGNX) | VMTime | Time | |
VMSTERM | (EGNX) | VMTerminal | VM Terminal Address | |
VMSUSER | (EGNX) | VMUser | VM Userid | |
VMSCODE | Mapped Integer | VMAuditCd | VM Audit Cd | |
VMSCODED | (EGNX) | AuditCdDesc | Audit Code Description | |
VMSTOK1 | (EGNX) | VMTok1 | VM Token1 | |
VMSTOK2 | (EGNX) | VMTok2 | VM Token2 | |
VMSTOK3 | (EGNX) | VMTok3 | VM Token3 | |
VMSTOK4 | (EGNX) | VMTok4 | VM Token4 | |
VMSTTYPE | Mapped Integer | TermType | Terminal Type for Terminal Address | |
VMSTTYP2 | Mapped Integer | TermTypeTok1 | Terminal Type for Token 1 | |
VMSALTID | (EGNX) | VMAltUser | VM Alternate UserId-Surrogate | |
VMSIPV6A1 | (EGNX) | VMIPV6Addr1 | VM IPV6 Addr | |
VMSIPV6A2 | (EGNX) | VMIPV6Addr2 | VM IPV6 Addr for Audit Cd 410/470 |
Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*