PaloAltoCortexXDR_Audit_Agent_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (13 columns)

Source: Connector definition

Column Name Type Description
AgentType string Type of agent involved in the event
Category string Category of the event
Description string Detailed description of the event
Domain string Domain associated with the endpoint
EndpointId string Unique identifier of the endpoint
EndpointName string Name of the endpoint involved in the event
Reason string Reason for the event or action
ReceivedTime datetime The time when the event was received
Result string Outcome or result of the event
Subtype string Subtype of the event
TimeGenerated datetime The time when the record was generated
Timestamp datetime The timestamp of the event
TrapsVersion string Version of the Traps agent installed on the endpoint

Solutions (2)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
Palo Alto Cortex XDR


Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index