Samsung_Knox_User_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (17 columns)

Source: KQL validation test schema

Column Name Type
ConfidenceScore real
DeviceImei1 string
DeviceImei2 string
DeviceModel string
DeviceSerialNumber string
DeviceWifimac string
EventGuid long
MitreTtp dynamic
Name string
PkgName string
PrimaryImei string
Profile string
Severity string
TimeGenerated datetime
Url string
UrlType int
Version int

Solutions (1)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
Samsung Knox Asset Intelligence

Content Items Using This Table (4)

Analytic Rules (2)

In solution Samsung Knox Asset Intelligence:

Analytic Rule Selection Criteria
Samsung Knox - Password Lockout Events
Samsung Knox - Suspicious URL Accessed Events

Workbooks (2)

In solution Samsung Knox Asset Intelligence:

Workbook Selection Criteria
SamsungKnoxAssetIntelligence

GitHub Only:

Workbook Selection Criteria
SamsungKnoxAssetIntelligence

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index