VMware_CWS_Weblogs_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (48 columns)

Source: KQL validation test schema

Column Name Type
accessMode string
action string
browserType dynamic
browserVersion dynamic
casbAppName dynamic
casbCatName dynamic
casbFunName dynamic
casbOrgName dynamic
casbRiskScore dynamic
categories string
contentType string
cws_timestamp datetime
destinationIp string
dnsResponse string
domain string
dstCountry string
egressIp string
fileHash dynamic
fileHashScore string
fileName string
fileScanResult dynamic
fileSize string
fileType string
mimeType string
policyHeaders string
policyName string
protocol string
region string
requestMethod string
requestType string
responseCode string
risks dynamic
ruleMatched string
saasEgressHeaders dynamic
sandboxInspectionResult string
sandboxMaliciousActivitiesFound string
sandboxScore string
sourceIp string
srcCountry string
threatTypes dynamic
TimeGenerated datetime
url string
userAgent string
userGroups dynamic
userGroupsMatched dynamic
userId string
virusList string
webRiskScore string

Solutions (1)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
VMware SD-WAN and SASE Connector

Content Items Using This Table (2)

Analytic Rules (1)

In solution VMware SASE:

Analytic Rule Selection Criteria
VMware Cloud Web Security - Web Access Policy Violation

Workbooks (1)

In solution VMware SASE:

Workbook Selection Criteria
VMwareSASESOCDashboard

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index