Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
| Attribute | Value |
|---|---|
| Ingestion API Supported | ✓ Yes |
Source: Connector definition
| Column Name | Type | Description |
|---|---|---|
| account_type | dynamic | Account type details |
| assignment | dynamic | Raw assignment object |
| assignment_assigned_by | dynamic | Assigned by user object |
| assignment_assigned_by_id | real | Assigned by user ID |
| assignment_assigned_by_username | string | Assigned by username |
| assignment_assigned_to | dynamic | Assigned to user object |
| assignment_assigned_to_id | real | Assigned to user ID |
| assignment_assigned_to_username | string | Assigned to username |
| assignment_date_assigned | datetime | Date assignment was made |
| assignment_id | real | Assignment ID |
| attack_profile | string | Attack profile |
| attack_rating | real | Attack rating score |
| breadth_contrib | real | Breadth contribution to threat score |
| detection_set | dynamic | Associated detections |
| entity_type | string | Entity type (host or account) |
| host_type | dynamic | Host type details |
| id | real | Entity ID |
| importance | real | Entity importance score |
| ip | string | IP address |
| is_prioritized | bool | Whether entity is prioritized |
| last_detection_timestamp | datetime | Timestamp of most recent detection |
| last_modified_timestamp | datetime | Timestamp of last modification (used as checkpoint) |
| name | string | Entity name |
| notes | dynamic | Analyst notes |
| privilege_category | string | Privilege category |
| privilege_level | real | Privilege level |
| sensors | dynamic | Associated sensors |
| severity | string | Severity level |
| state | string | Entity state |
| tags | dynamic | Tags |
| TimeGenerated | datetime | |
| urgency_score | real | Urgency score |
| url | string | Entity URL |
| velocity_contrib | real | Velocity contribution to threat score |
Official Microsoft Learn documentation for field/column information:
This table is used by the following solutions:
This table is ingested by the following connectors:
| Connector | Selection Criteria |
|---|---|
| Vectra RUX Security Data Connector (via Codeless Connector Framework) |
In solution Vectra XDR:
| Workbook | Selection Criteria |
|---|---|
| VectraRUXSecurityDashboard |
| Parser | Solution | Selection Criteria |
|---|---|---|
| VectraEntities | Vectra XDR |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊