CrowdStrike_DNS_Events_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index


Attribute Value
Category Crowdstrike
Ingestion API Supported ✓ Yes

Contents

Schema (36 columns)

Source: Connector definition

Column Name Type Description
AdditionalFields dynamic
aid string
aip string
BoundingLimitCount long
BoundingLimitDuration string
cid string
CNAMERecords string
ConfigBuild string
ConfigStateHash string
ContextProcessId string
ContextThreadId string
ContextTimeStamp real
CrowdStrikeId string
DnsRequestCount long
DnsResponseType string
DomainName string
DualRequest string
EffectiveTransmissionClass string
Entitlements string
event_platform string
event_simpleName string
EventOrigin string
FirstIP4Record string
FirstIP6Record string
InterfaceIndex long
IP4Records string
IP6Records string
name string
OciContainerId string
QueryStatus string
RequestType string
RespondingDnsServer string
TimeGenerated datetime The timestamp (UTC) reflecting the time in which the event was generated.
timestamp long
TreeId string
UserName string

Solutions (1)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
CrowdStrike Falcon Data Replicator (AWS S3) (via Codeless Connector Framework)


Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index