CortexXpanseAlerts_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (76 columns)

Source: Connector definition

Column Name Type
Action string
ActionCountry dynamic
ActionExternalHostname string
ActionLocalIp string
ActionLocalIpV6 string
ActionLocalPort string
ActionPretty string
ActionRemoteIp dynamic
ActionRemoteIpV6 dynamic
ActionRemotePort dynamic
AlertId string
AlertType string
AsmAlertCategories dynamic
AssetIdentifiers dynamic
AssetIds dynamic
AttackSurfaceRuleId string
AttackSurfaceRuleName string
AwsCloudTags dynamic
AzureCloudTags dynamic
BusinessUnitHierarchies dynamic
CaseId int
Category string
Certificate dynamic
CertificateSubjectOrganization string
CloudManagementStatus string
CloudProvider string
CloudProviders dynamic
CountryCodes dynamic
DeduplicateTokens string
Description string
DomainNames dynamic
DynamicFields dynamic
EndMatchAttemptTs datetime
EndpointId string
EventId string
Events string
EventTimestamp dynamic
EventType string
ExternalId string
ExternallyDetectedVersion string
FilterRuleId string
GcpCloudTags dynamic
HostIp string
HostName string
ImageName string
IntegrationSource string
Ipv4Addresses dynamic
Ipv6Addresses dynamic
IsWhitelisted bool
LastModifiedTs datetime
LastObserved datetime
LocalInsertTs datetime
MacAddresses dynamic
MaliciousUrls dynamic
MatchingServiceRuleId string
MatchingStatus string
MitreTacticIdAndName dynamic
MitreTechniqueIdAndName dynamic
Name string
PortNumber int
PortProtocol string
ProjectName string
RemediationGuidance string
ResolutionComment string
ResolutionStatus string
ResourceSubType string
ResourceType string
ServiceIds dynamic
Severity string
Source string
Starred bool
Tags dynamic
TimeGenerated datetime
UserName string
WebsiteIds dynamic
XpanseFirstObserved datetime

Solutions (1)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
Palo Alto Cortex Xpanse (via Codeless Connector Framework)


Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index