Mappings: AWS Elastic Load Balancer - Custom Parser
Input | Value |
---|---|
Vendor | AWS |
Product | Elastic Load Balancer |
Log Format | JSON |
Event ID Regex Pattern | _default_ |
Output | Value |
---|---|
Vendor | Amazon AWS |
Product | Elastic Load Balancer |
Record Type | NetworkHTTP |
Cloud SIEM Schema Field | Original Record Key | Notes |
---|---|---|
bytesIn | received_bytes | |
bytesOut | sent_bytes | |
cloud_provider | None | The static text AWS is populated in this schema field. |
cloud_service | None | The static text Elastic Load Balancer is populated in this schema field. |
dstDevice_ip | target_ip | |
dstPort | target_port | |
http_method | request_type | |
http_response_statusCode | target_status_code | |
http_url | request_url | |
http_userAgent | user_agent | |
srcDevice_ip | client_ip | |
srcPort | client_port | |
timestamp | time | We expect the orginal record value of time is in the format yyyy-MM-dd'T'HH:mm:ss |