NSSWebLogsThreats

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Content Index


Attribute Value
Type Workbook
Solution Zscaler Internet Access
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Selection Criteria Transformations Ingestion API Lake-Only
CommonSecurityLog Activity contains "IPS"
DestinationServiceName != "generalbrowsing"
DeviceCustomString3 contains "Behavior"
DeviceCustomString5 != "None"
DeviceCustomString5 != "suspiciousfile"
DeviceCustomString5Label == "threatname"
DeviceEventClassID == "Blocked"
DeviceEventClassID !contains "Allow"
DeviceEventClassID contains "Block"
DeviceProduct == "NSSWeblog"
DeviceVendor == "Zscaler"
SourceUserPrivileges == "Road Warrior"

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Workbooks · Back to Zscaler Internet Access