Armis_Activities_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (42 columns)

Source: KQL validation test schema

Column Name Type
_ResourceId string
ActivityType string
ActivityUUID string
Armis_Activity_Time datetime
Computer string
ConnectionIds string
Content string
DecisionData string
DecisionData_AnswerIps string
DecisionData_ClientOfferedSuites string
DecisionData_DeviceId real
DecisionData_Host string
DecisionData_Method string
DecisionData_Port real
DecisionData_QueryType string
DecisionData_SelectedSuite string
DecisionData_SelectedSuiteSecurityLevel string
DecisionData_SrcDeviceId real
DecisionData_SrcIp string
DecisionData_SrcMac string
DecisionData_SslConnectionStatus string
DecisionData_UserAgent string
DecisionData_Version string
DestinationEndpoints string
DeviceIds string
EventProduct string
EventVendor string
ManagementGroupName string
MG string
Protocol string
RawData string
Sensor string
SensorName string
SensorType string
Site string
SiteLocation string
SiteName string
Sites string
SourceEndpoints string
SourceSystem string
TenantId string
TimeGenerated datetime

Solutions (1)

This table is used by the following solutions:

Connectors (2)

This table is ingested by the following connectors:

Connector Selection Criteria
Armis Activities
Armis Alerts Activities

Parsers Using This Table (1)

Other Parsers (1)

Parser Solution Selection Criteria
ArmisActivities Armis

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index