Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊
| Attribute | Value |
|---|---|
| Ingestion API Supported | ✓ Yes |
Source: Connector definition
| Column Name | Type | Description |
|---|---|---|
| AccountId | string | The unique identifier for the account. |
| AccountName | string | The name of the account associated with the event. |
| ActivityType | real | The type of activity represented by an integer. |
| ActivityUuid | string | The UUID of the activity associated with the event. |
| AgentId | string | The unique identifier for the agent. |
| AgentUpdatedVersion | string | The version of the agent that was updated. |
| Comments | string | Any comments associated with the event. |
| CreatedAt | datetime | The timestamp (UTC) when the record was created. |
| Data | string | Activity metadata. |
| Description | string | The description of the event. |
| GroupId | string | The unique identifier for the group. |
| GroupName | string | The name of the group associated with the event. |
| Hash | string | The hash associated with the event. |
| Id | string | The unique identifier for the record. |
| OsFamily | string | The operating system family, such as macOS. |
| PrimaryDescription | string | The primary description of the event. |
| SecondaryDescription | string | The secondary description of the event. |
| SiteId | string | The unique identifier for the site. |
| SiteName | string | The name of the site associated with the event. |
| ThreatId | string | The unique identifier for the threat. |
| TimeGenerated | datetime | The timestamp (UTC) reflecting the time in which the event was generated. |
| UpdatedAt | datetime | The timestamp (UTC) when the record was last updated. |
| UserId | string | The unique identifier for the user. |
This table is used by the following solutions:
This table is ingested by the following connectors:
| Connector | Selection Criteria |
|---|---|
| [DEPRECATED] SentinelOne (using Azure Function) | |
| SentinelOne (via Codeless Connector Framework) |
In solution SentinelOne:
In solution SentinelOne:
In solution SentinelOne:
| Workbook | Selection Criteria |
|---|---|
| SentinelOne |
| Parser | Solution | Selection Criteria |
|---|---|---|
| SentinelOne | SentinelOne |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊